Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.ijktech.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 13, 2025
Valid Until
January 11, 2026
42 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4D:2E:EE:56:1C:F7:20:F6:05:DF:C9:05:B3:FB:DA:42:69:13:A7:0F:EA:73:7C:66:25:BC:58:66:36:22:5B:0D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
customer.chocolateteddies.com
100aif.ru
canteen-roomplanner.3dcloud.io
www.apereira.ca
attentiveproposals.com
www.avianaa.com
calcfast.app
ashapurunfoundation.co.in
www.comm-tool.com
demo.connectsx.com
www.constanzehaas.com
cosprops.app
www.dataware.dev
portal.datawarehousegh.com
www.discoversalemacademy.com
toys.el-darto.net
www.explorertravel.in
www.fakedictionary.net
famz.pro
www.focalintelligence.com
www.francisroadallotments.co.uk
gachenot.eu
gdsc.app
getelephantcpa.com
globalnetworking.es
gtmtls.co
haitiangirlsbrunch.info
hinterland.homes
app.hireplace.com
www.ijktech.com
immigreat.global
jestervoidai.me
jly.app
apply-staging.joinsherpa.io
www.jugendkompass.com
juliocastillo.dev
www.keithloughnane.com
playground.kistorm.com
ksmjobs.com
lubarbers.com
mariovelasquez.dev
memeplex.app
www.menu-online.co
fruteria.mewo.es
mgma-mm.org
www.moppu.com
laboratorio.mya-tech.tech
firebase.mybiglove.ru
bankozk.neoufitness.com
api.nettplus.net
erp.newtendency.com
spm.numerously.com
www.patugo.com
pdmakine.com
registrierung.petleo.de
termin.petleo.de
phimethod.com
pibgmais.com.br
piertopinsurance.com
piertoprealestate.com
telehealth.pneuma.care
www.proshooters.app
www.rathakit.com
lenovochannelsummitca20.rebus.com.co
demo.reveknew.app
river-camera.tv
fme.roseusfox.com
www.roseusfox.com
www.rwabyte.com
ghcalendar.sajidahamed.com
cv.santi.dev
sarsatechpk.com
shastraaura.com
www.sheldonexp.com
shenanigifs.app
smartpay21.com
socks.gifts
sooperbooks.com
www.soulofthewatchman.com
www.spectralfingerprints.com
spotip17an.es
scratchandwin.sqwadhq.com
srinivasank.net
www.studentenrechtshulp.nl
summerbasehart.com
drhafizur.sundiabetescare.com
login.svdigitalpay.com
injective.swapfast.app
www.the-arkive.com
www.thesciencecapital.org.uk
travelerloot.com
console.treepodia.com
cms.veewar.com
destaat-orders.waiterpro.com
backoffice.thor.weblium.io
womanintheroom.com
open.getwet.yodelit.co
link.zam.me
phonestock.zc-portfolio.fr
www.ziipofficial.com
Other domains in certificate