Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=app.feriadeteatro.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026
51 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4D:42:96:47:AD:86:10:28:56:20:18:8A:F1:32:F4:23:88:CD:1A:63:68:E4:3F:1F:C0:3D:DF:F5:A0:84:E3:6A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
certifiedmom.com
webhooks.8dio.net
s.ad-e.jp
adampeterson.tech
web7.alexsquibbs.com
www.alliancelabs.com
www.andycai.xyz
apneindian.com
arabactuaries.org
arualgj.com
wbasp04.as-protection.de
aschwartz.de
astrodynamic.space
atmans.world
product.autoformsai.com
betoolz.it
bitworking.org
www.blackham.tax
www.blueteam.app
www.cardsplus.org
carlosribeirocorretor.com.br
www.cogmos.com
www.darksideof5g.com
designer.designalley.in
analytics.dev-raksul.me
dietwhisperer.com
xi2y2ox23e.easyapp.co
campus.cfp2caba.edu.ar
ellisaudio.com.au
elogico.com.br
empeiria.co
empiricspace.com
entailmentinc.com
access.esportsbook.com
www.evernest.tv
app.feriadeteatro.com
flamenco.study
auth.framevr.io
www.greateredgelandscapingllc.com
heeeeeeeey.com
hostmania.cz
www.icicle.exchange
saveto.imagetext.xyz
www.ingenuity-apps.com
checkout-cybris.insureshop.ph
hangar.jar.io
joetdc.com
klhui.hk
lafinestradarezzo.it
app.learningsuite.io
www.letscan.it
libecity-dev-0601.xyz
likha.tech
reliancepartners.loadsure.net
quanlynkng.loctroi.vn
logicaljupiter.eu
www.luxury-smoke.com
uongsung.m1studio.co
www.maledifresh.co.za
www.marcogreselin.com
www.mascella.com
organization.mesbro.in
mettle-studio.com
colorbadlo.mojocash.in
www.naturalhealingwycombe.co.uk
nizer.it
www.notecaster.app
firebase.offline.no
www.phoenixkerala.in
analytics.qa6-raksul.me
admin-panel-dev11.qlub.cloud
www.quickiesapp.com
messenger.redkiwiapp.com
refaccionaria.repzone.mx
www.rightexpertsmgt.com
saticollege.online
semantio.xyz
utools.shakeeb.in
www.cms.shoofti.com
www.simply3d.io
www.sledcom.net
www.somosadoracion.com
www.srisuryanarayanaswamydevasthanamgmamidada.org
svalbard.tech
stg.tatainvite.com
foody.tiborg.app
travelb2b.travelgatex.com
link.treaclefactory.co.uk
www.unluckyvalidators.io
settlers-united.vanfanel.de
www.vcctechinc.com
www.violegacy.org
staubli-solutions-medica-cn.virtual-brand.space
getty-cms-develop.virtualprojects.io
karur.vishnutaxi.com
waxdetective.io
www.web3-analyst.xyz
advisor.wenture.io
martin.westphal.pw
link2.yuyoapp.com
Other domains in certificate