Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=connect.fea.flgroup.com.my
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 26, 2025
Valid Until
December 25, 2025
33 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
75:78:25:F8:2E:DA:8A:88:9F:90:CE:3B:41:5F:59:EF:9C:79:F4:76:7D:E1:92:9F:CC:17:11:87:21:55:71:00
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
chi2create.eu
acm-dev.adssets.com
agexbe.corsica
aleooracle.xyz
altiusindia.org
ampcustomhomes.com.au
angular-developers.co.uk
aapta.apxor.com
www.arielgelbard.com
axionics.site
www.azahpestcontrol.com
door.bartweb.cz
www.beefybets.com
www.bennotielen.de
dev.bestathletes.co
www.blockrocket.tech
www.bmacpherson.com
borasergei.love
alpha.bumper.fi
webinar.casaduana.com
staging-mobilecms.cbsi.com
www.chat-libere.com
chnindia.com
chnindia.in
cleanwithsparkle.com
www.collettwedding.com
connect.fea.flgroup.com.my
www.datero.com.uy
link.conteofinal.com
copaguia.com
craneshare.com
cybersquare.ca
beta.darklabsubscription.com
prueba1.dashport.run
obi-j.dev-ltl-xpo.com
devprg.se
dev.ds-carlife.jp
dungeon-stories.com
fe.early.vision
eeegole.com
elictronics.co.za
eligibbs.net
clasificados.elsoldeorizaba.com.mx
www.endoskopia.eu
www.fabriciosales.com.br
admin-cart-recovery.falconitconsultant.com
www.findamassageschool.org
www.foricpvtltd.in
formika-praca.pl
www.golfi.me
hitalent.me
incantation.app
itsgottamakecents.com
www.jacquelinescakes.com
dev-issy.jahnelgroup.com
jogodavelha.com.br
kiantechwise.com
www.kiantechwise.com
www.konjai.com
www.kubevault.com
www.kumovalves.com
find-it-play.learnify.pw
poll-dev.da.letsdive.io
www.leydev.com.br
www.city-climate-trends.lobelia.earth
ondernemers.lokalebon.nl
medirehab.it
dev.app.mue.micromal.org
course.milavet.lt
covidstats.mohw.bz
www.ninedots.co
www.onesimus.de
onlyskills.com
www.parturikampaajajennis.fi
www.prepear.app
www.rodricklankford.com
monopoly.russellchallis.co.uk
work.sayonara.voyage
links.sevendegrees.io
app.sharo.io
demo.socialmedia-health.com
sos-cto.com
shortify.stefanhinterhoelzl.at
summerleasdiabetescare.com.au
formularz.superpaczka24.pl
auth.tangled.me
app.touringbee.com
test-stereo-vv.toysfilms-interactive.com
fit.trinkify.de
www.vectormars.com
app.vente.es
short.videoconferenciaclaro.com
vreugdenhilfarm.com
www.vreugdenhilfarm.com
wearesouthbound.co.za
www.app.withorca.com
woodsof.org
zdrajcy.fun
rra.zebull.in
www.zephyrhillmusic.com
Other domains in certificate