Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=zebu.mynt.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 10, 2026
Valid Until
April 10, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C8:EF:A3:1E:80:24:B4:D1:CE:E5:9A:78:E7:DC:6B:9F:71:D9:0B:C8:E5:64:51:8E:0A:76:F8:0E:3C:41:E1:51
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
cloudindus.com
cbd.u2t.ac.th
linksharer.adamjhawley.com
quickfeedback.adamjhawley.com
aioutpost.blog
app.alignwith.io
altpsyche.dev
bharatapps.store
bmwm5csusa.autos
www.bruceclough.com
www.civilia.io
claira.health
clinicsync.net
codesave.me
sota-ski-dream.com.ua
daynnightcleaning.ca
www.destinos.app
dicolandia.com.br
dojokaizenkarate.com
www.dojokaizenkarate.com
easyautomaticlessons.co.uk
ebmobil.site
estechfy.com
expect.photos
fdaawards.com.br
confidentsadmin.femda.org
frogspoon.com
fynalyst.com
genautech.com
giftloopportal.com
godbolekul.com
www.grabadopreciso.com
community.guivus.com
gutvibes.ch
www.gutvibes.ch
h90-ai-project.com
hibengsart.xyz
firebase.howco.de
igloocoolingsolutions.com
imiraq.com
analisisconsumo.incaaztecagold.com
institutocopantl.com
www.ittrust.com.br
jamelsahli.cz
write.jeffreyforman.net
react.jpde.pt
static.jpde.pt
faithmusicmissions.kandr.io
karinkrutsche.online
kicgle.org
lavishweb.com
locateg.com
www.mainstreetcarwashrb.com
mashuperu.org
www.mashuperu.org
mbarancakmak.com
meditechpma.com
mesbahlabs.com
minutes.biz
mockover.com
palacinky.mpau.eu
zebu.mynt.in
www.mysommy.com
naapcode.com
ntsacademysa.com
sso-auth-stg.onum-labs.com
optimedix.info
parcsol.co.uk
notflix.petedev.co.uk
app.popstack.ai
pranavfulkari.com
www.pranavfulkari.com
devcore.profeed.online
www.raenergysolution.com
resuranker.com
app.ridedott.com
link.rizzotto.it
samparkfoundationjalgaon.org
flowguard.schmidtstallateur.de
namakkal.selvitravels.in
pudukkottai.selvitravels.in
ranipet.selvitravels.in
thiruvallur.selvitravels.in
sales-qa.setkeeper.com
seupresenteperfeito.com.br
shinigamiidapk.store
sjagwan.com
solangecorretora.com
www.solangecorretora.com
space-of-beauty.com
11480267.stratics.io
solidvalues.tellurics.earth
thegodsandheroes.com
docs.tlclub.xyz
truckcheck.app
dev.admin.uttrly.com
www.vforvishal.com
watr.one
wpxm.xyz
www.wpxm.xyz
Other domains in certificate