Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=haridusenadeera.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 05, 2025
Valid Until
January 03, 2026 46 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5F:6B:71:78:EF:D7:19:84:A0:1A:86:60:09:1E:D6:8C:95:60:F3:8A:FA:3F:C3:B5:43:B7:69:9D:92:55:FD:97
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
codeworks.com.ar

Other domains in certificate

11520693.peerly.app
www.1kb.software
24shop.lk
6bees.app
www.aasicplastic.com
i.dev.accelior.com
ref.acciojob.com
aerowestatlanta.com
www.agilebin.com
satura.aimcomely.com
admin.anandigreens.com
client.appskoko.com
armscampdemo.com
test.aspeppc.com
beanbazaar.com
www.bowling-connector.de
boyish.in
bullion-boutique.com
bunalert.app
caimicolombia.com
can-you-name-all-pokemon.net
www.caseymuratori.com
shelem.casinopersia.com
hermawan.eyro.co.id
www.yaowaratbangkok.co.th
www.cryptics.ro
dagoda-invest.com
domobile.app
web.droplii.com
dlc-dev.earthcubs.com
ecoecoles.ma
app.eduswitch.com goldstandardsports.eduswitch.com
my.empirefx.com
encxre.com www.encxre.com
www.escuelamusicalmerimar.com
www.protoss.eu.org
th.eui.app
www.evapfix.com.au
m.farmacerca.com
hotelpartner.favstay.com
fenrisvrede.com
qa-static.vote5.campaigns.fire-emblem-heroes.com
hoyahoya.flower-park.com
delivery-stage.foodkub.com
freefoodforfamilies.com
freewateratairports.com
integration.getguider.co
www.gotogether.xyz
earlybird.hackforplay.xyz
haridusenadeera.com
www.hartmood.com
hyperrealtechnologies.com
joinboosters.com
kaaturu.com
app.kardespayi.org
kitolabs.com
qr.life.id
luntch.com
lyrico.net
drikk.majatestad.no
merl.ink
www.molta.app
mymoneytree.co.za
neopanafricanism.com
l.obdining.sa
www.omniscient-app.com
pomopal.com
www.postfy.co
www.procanarias.com
limburg.provincieraad.live
quesodigital.com
reciclaportufuturo.com
www.reputation-und-recht.de
app.resiview.com
app.returniq.co
rivermeadlodge.org.uk
www.rovaniemiairport.fi
royalguardian.farm
sexydata.net
larder-to-table.shelbyshipley.dev
play.smashopoly.com
sorte-inc.com
sparosdailycruises.com
albertaballetsh.sqwadhq.com
www.startgdpr.ro
swite.dev
test.szkolatanca.app
www.tajinderpalsingh.com
studio.takst.app
timjordanphd.com
www.tupodologa.es
udonawase.udonapps.com
api.arrive-sandbox.vendpark.io
support.wise-mon.com
woodvalecounseling.com
www.yoin-wallet.com
sh.yong.ee