Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=boukili.ca
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
March 31, 2026
Valid Until
June 29, 2026 55 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:FF:10:B1:EF:E1:EF:D2:01:9A:D2:6C:02:E8:A1:3F:52:73:C1:77:FF:34:BB:ED:89:38:27:30:28:FA:CA:61
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
cesgaexam.com

Other domains in certificate

app.2ndunit.io
admin.2xcell.in
www.ai1travel.com
amb-app.com
amyduke.com
andrewduquette.com
www.arulsdiabetes.com
ayankoley.com
www.bankhols.com
staging-app.beamian.com
bhallislife.com
reports.bifrost.health
birrierialanderos.com
www.bitecrunch.com
www.boddyspargo.com
boukili.ca
byjoshmiranda.com
chelab.co
christophernilson.com
closedbrackets.com
www.cocukkulubu.com
compagnie-ezo.com
coreenergyni.com
encurtador.dankicode.com
manage.datiopos.com
eatwhat7.com
www.ebea.info
edunotes25.com
energyandenvironmental.com
equistream.ae
ferraroautotransport.com
app.findingjo.com
www.fotoenblan.co
gabbyasuncion.com
georgemaclean.com.au
2dspine-ice.globalsoft.games
hlkt.in
internationaljukebox.com
istrafficshitty.com
jacintaenclaves.com.ph
imgcap.jingjietan.com
www.kirpalshergill.com
www.kraainembc.be
kudocoin.cc
www.levan.cloud
looongride.com
lordsofsloth.com
ludasof.com
gea-mdf-formbuilder.moreapp.com
mrhoros.dev
app.myprepify.site
ngtfa.co.uk
nguyentrungkhang.id.vn
theta7-2020.nicosiascouts.group
onlyinocala.com
command.optimusride.com
www.paulamonteiropersonal.com.br
pilotadirecte.com
pockets.dev
primaryplaylist.com
www.progressier.com
projectbluff.com
app.quickclientportal.com
auth.rackinginspector.com
www.radoslav11.com
rameswaramcabs.com
ravenveld.nl www.ravenveld.nl
rcbleague.com
mirae-album.re2fe.com
recytrack.com
ricobarnes.com
www.rtirl.com
saiot-cloud.com
salvatgia.cat
santaroza.hu
santiagotettamanti.com
www.satheeshhomenursingservices.in
app.seiqui.com
shopsharknyc.com
siteauditpro.com
www.sitwech.com
www.sobering.ca
www.sodastreetfood.com
soldwithrys.com
spellbookpress.com
suddenpeak.biz
www.systemverilogeditor.com
tagorevanasthalischool.com
thecoffeebreak.co
thetreester.com
three65.ai
unicornaas.com
usakkamera.com
vavenet.com
www.wallentsoftware.com
www.wealthstream.uk
app.witful.dev
sistema.xglobal.com.br