Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.nav.codes
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 25, 2025
Valid Until
December 24, 2025 33 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
74:49:96:A7:7C:DA:D8:2A:72:5B:F2:05:FE:DD:70:E5:D9:F6:B5:7F:A1:04:DD:41:07:1F:1F:B6:E5:D3:4E:A3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
csfored.org

Other domains in certificate

michukitech.ac.ke
www.adosil.com
www.aethilus.com
alexis-champault.fr
arian.ee
datastore.artience.me
www.astronaut4.earth
famfull.bdo-advies.nl
www.bige.dev
www.bytecommit.com
www.bytesg.com
admin.cannactrl.com
cfmtve.co.za
requester.cgarcia.co
infoapp.brainshake.co.il
ecomcio.com.tr
www.actinno.com.tw
comicpricecheck.com
test.connecthumanity.fund
curiodev.net
www.cycue.com
danielqu.tech
www.deepfried.fish
www.dein-transkript.de
setups.devtard.co.uk
dipcogroup.com
eventwood.no
www.exchange-eg.com
aplicativoteste.farmcont.com.br
fashion-how.org
kanjer.felixxgroep.nl
www.fixbvb.com
bestellen.gali-greven.de
www.goalyweb.com
home.gustavfredriksson.com
parmazip.hippocrades.com
www.hmins.net
homecarekl.com.br
www.imag.io
www.intellycorp.com
news.investably.io
www.kadaicoklat.com
www.kar.lu
keszulo.hu
www.legitimatelyryan.dev
inventar.info-ag.leoboedeker.de
configurator.lifesherpapp.com
lingwen.org
madrasa.co.za
dev.mageicons.com
mathnstats.co.za
testpagina.mcdonaldsnederland.app
app.memopin.io
www.moleskinedigital.studio
www.nav.codes
auth.staging.net.in
ngoan-streetfood.de
oilstudio.me
www.web.orderlina.com
www.mokry.org.ua
webportal.outerdawn.co.nz
upload.posterheroes.org
game.prelaunch.com
auth.google.propagadordapalavra.com
www.ptfinder.app
puzzler.pudgypuzzles.com
quiuqui.com.br
sodexo.seguimiento.rayoapp.com
docs.staging.retorio.com
www.roflbook.com
www.saguji.com
gssp.nudge.staging.sasaki.com
tee-factory.simplemente.online
www.sis-schadensmanagement.com
www.sis-trocknung.com
solracenergiasolar.com.br
redfield.southvilledeli.com
evoliz-app.speakylink.com patrimoine.speakylink.com
spectrumbuildtech.com
cms.landing.ss.hr
www.stormfire.net
strona.be
www.teplicky-cimes.cz
nlt-centre.timp.io
topcharts.tech
pedidos.tradepro.com.br
dev.trymeel.com
unikatum-manufaktur.de
app-test.variobend.de
www.venturestudiocollective.com
viniciusfigueiredo.com.br
www.vulpine.virtueandtrade.com
webxtutor.com
bookroom.x2mobile.net
xxander.se
study.youngspace.org
yuelee.me
egp.zrm.vn