77/100 SECURITY SCORE

Certificate Information

Subject
CN=ct.gestion-traiteur.shop
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 12, 2026
Valid Until
August 11, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C5:32:61:EB:E5:67:0F:B1:9C:77:DA:33:71:ED:E1:C0:AC:AA:FC:D2:60:2C:7E:23:EA:B0:3F:B2:2E:E1:E3:14
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
comercios.mifacto.com staging-comercios.mifacto.com

Other domains in certificate

www.a2apay.co.uk
abhishekkhaparde.com
a1audio.alexhilton.net
idse.apimarket.mx
aplicativovendamais.com.br
arrowheadsoftware.co.za
jio.astroking.net
avit.co.nz
www.biblifacil.com.br
www.bradglisson.com
buro.lv
www.cam-intelligence.com
paris.chrisanderica.us
www.chxnetwork.top
www.ciroxsolutions.com
congvinh0502.id.vn
jointheq.countdown.co.nz
mai.cradle.work
www.creditasllc.com
hello.delcom.nl
www.diegosanmartin.com
www.dragonsgame.net
draw.am
nav.dreamsoul.cn
web.eyefile.be
www.ffcscombogen.in
franky-ai.com www.franky-ai.com
ct.gestion-traiteur.shop
www.getbridgelogics.com
link.getcarrier.com
dev.curlcupid.glimmer.info
www.gynet.top
happymindlabs.co.uk www.happymindlabs.co.uk
portal.hausvalet.ca
skipan.hsf.fo
www.intpcat.net
www.isds-sweden.com
jangseoksoon.org
kittap.app
mc-rankings.kro.kr
kulabu.dk
billet.kystmuseet.dk
www.lwaziapp.co.za
www.madcloudconsulting.com
www.maiorescu.org
masoftware.in
admin.matee.xyz
member.mazurisacco.online
mesh-in.com
www.misterchocolate.world
www.musicmergers.com
mvv.consulting
www.navigatetrip.com.br
www.notes.run
oasishypnocoach.co.uk
admin.ominibridge.com
dfm.onedrone.com
www.orkfest.com
otmanetahri.com
beta.ournego.com
parksidelegal.com.au
chaleslimeira.piumatecnologia.com.br
pivografie.cz www.pivografie.cz
drpoint.pointsoftwares.com
proarticles.cloud
holasegapp-dev.proyectosyseguros.com
words.qef.codes
bridge.stage.rpm.quokkacare.io
admin.quotesofgenius.com
nihola.reepco.dk
requestorapp.co.za
www.ricardojustino.com.br
ocenmart.rijoan.com
www.ro-service-center.in
sailbaikal.ru
www.sarahwerther.de
login.simplificaeua.com.br
smartkeyplatform.io
dev-admin.speakylink.com
srkengineering.com.sg
datareport.strolycom.gtest.dev.stroly.jp
tailwindkompass.com
app.tapcast.io
radiocorazon.themediatrade.com
thequizmasterpro.com
www.thirukadaiyurevents.in
calc.tilfin.com
bricodepot.tmobility.app
links.uat.myid-idp.unifiedpost.com
puerto.veertig.xyz
www.willsite.site
www.yams.land
www.zhiyxtech.top
zsag.com.ua
zselectro.com.ua