Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.yosn.events
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 27, 2025
Valid Until
March 27, 2026
50 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F3:95:E5:97:0F:1B:73:07:89:29:76:DA:84:D5:62:5F:EC:B2:6C:E7:25:A5:EA:74:BC:F3:E8:58:82:4E:14:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
contactscrossword.com
path.1campus.net
www.1erbalcon.fr
3dreact.com
aisharktank.fun
founder.aisharktank.fun
www.alpha.apollofactor.app
kokocops.appskoko.com
auth.aquipa.com
www.araezarzosa.dev
arundanielk.dev
qrcode-dev.benjiinvestments.com
www.bigwav.app
bitsthink.com
buceadores.com
beta.budgetforecast.app
www.calculateamt.com
capinary.com
catastrophicpreparedness.org
www.cedarpumps.com
ciucky.com
livechat.transcycle.com.ph
portocredfinanceira.creditoexpress.com.br
www.danielchristian.dev
dougandliz.us
meet.dpschool.io
duckywakes.com
hello.ebol.dev
eden-studio.de
endlink.app
errantsignals.dev
esad.dev
home.etrivo.net
www.financialtrex.com
www.foreverware.org
foundermind.org
widgets.goodmoves.com
graspnow.in
beta.grupa.io
hanguokai.com
www.huditech.com
hust-cv-student-20215004.id.vn
p905i.ikuzaki.jp
applgpd.in1.com.br
development.invoigo.app
kongsalak.com
www.lightsync.app
www.loanadmin.app
lucidpixel.studio
www.lukascuman.com
link.lydul.com
m7soft.com
www.mcausa.in
mcglaughlin.dev
www.slp1.template.merdekatech.com
mikes-kids.org
link.moneydolly.com
mscf1841.org
msun.dev
develop.mycluetivity.com
play.nakogames.com
app.napandup.com
nasekomo.tech
dev.no-card.com
www.non-prophet.dev
www.noryan.mx
nthuaagc.org
orbiedtech.app
sumoprincesa.pedidomovil.es
pixelweb.app
organization.playfun.io
poemofono.online
scanme.pureit.vn
link.quaffed.ca
www.redbyt.io
robertmorar.me
rosenbauerfarms.com
www.sgaffney.me
www.shaundantv.com
www.shippingmarket.mx
sillysketch.com
www.slabikareodinesky.cz
expert-staging.smartplant.app
stellargear.kz
app.syzl.io
sw-pwa-ca.tech-scheduler.com
familycharter.testta-tools.nl
uat.theout.com
www.therealbitcoin.club
cluster.theseedfi.com
tlb.me
ref.topwallet.ph
vikingos.turnosweb.app
api-staging.untilgone.com
uspmun.com.br
vanbruysselinstallatie.nl
link1.test.vaulted.com
xapps.to
www.yosn.events
signup.yourclubmate.com
Other domains in certificate