77/100 SECURITY SCORE

Certificate Information

Subject
CN=boardscreen.fr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 17, 2026
Valid Until
July 16, 2026 70 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:E0:45:39:D3:33:63:BD:8C:31:92:04:D2:E7:C3:30:C7:78:95:6F:87:15:DC:E8:C5:56:A8:A8:CF:74:BF:41
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
console-staging.jdeploy.com

Other domains in certificate

158ibanmagdurlari.com.tr
laura.acordearquitectura.com
www.aidenmhr.com
app.aismuhendislik.com
www.amanhecercomjesus.org
amithgc.com
anyviaai.com
arsitarastudio.my.id
athlinx.it
ng.bantumart.com
bardamri.com
markatesti.binyilsonra.com
boardscreen.fr
bill.buitientuan.com
capfor.se
casakala.work
app.chajewelsjp.com
charlesdelacey.com
www.charlotteasencio.com
christophschuette.com
cipherscale-andromeda.com
next.coolrmsil.com
login.cooppay.co.in
stage.copernicusrx.com
app.cotunno.com
czch.cz
dantalsy.com
watch-party.darkplace.dev
dataplanet.ro www.dataplanet.ro
autumn.de4oult.online
documentauditai.com www.documentauditai.com
eclecticagalleria.com
emnajamoussi.com
energiadeamor.com
www.evenautop.com
evoevo.ai
forcepushlabs.com
www.franciscogomez.dev
dev.gni-asia.net
www.guardpro.management
www.guardprosecurity.services
healthy-vegetarian.my.id
hoer.me
app.holdeachotheraccountable.com
url.hooqle.com
www.infinityservice.tec.br
www.inout-hoteldesign.com
ironprairiefabrication.com
money.leito.co.il
www.lidagro.com.br
lqueiroztecnologia.com.br
lumvibe.site
mediamozaic.in
meowpocket.ru
mushi-tools.com
nader.agency
nanoosgroup.in www.nanoosgroup.in
neku.cc
neosoul.ai www.neosoul.ai
www.nikazhvu.com
norsksam.no
novacreative.online
links.opc.eu
ophtalmologuemeknes.com
parenthandbook.org
parkerlavering.com
kikiselement.phros.ca
posturize.com.br
priscilamartinsnutri.com.br
admin.prosolartechnologies.com
pulsebank.co.kr www.pulsebank.co.kr
www.rezzut.com
rezzut.ind.br
rezzut.org
roxservice.roxabo.com
food-now.ryanshee.com
salescrm.uz
shahzadhussain.online
slowpoke.online
thaizagoncalves.com.br
operations.tiltsmarthome.com
auth.toolshike.com
www.toothclick.com
trackmyfunds.site
transportesveroni.com
trustatic.de www.trustatic.de
grid.vivid360.io
voltissolutions.com
www.voyayge.co
vyaparanalytics.in
www.zoralabs.com.br zoralabs.com.br
www.zur.ie