85/100 SECURITY SCORE

Certificate Information

Subject
CN=flykontakt.dk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 25, 2025
Valid Until
February 23, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
64:D3:2D:0B:E7:CB:FD:F7:24:52:E5:5B:40:1A:E8:A0:4B:37:A7:C5:06:F1:48:A3:27:EB:C1:51:1A:6B:36:E8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Basic
default-src; style-src; script-src; +10 more
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
battery=(), camera=(), accelerometer=(), gyroscope=(), usb=()
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Improve CSP by adding more specific directives and removing 'unsafe-inline'
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
dashboard.ignite2x.com

Other domains in certificate

linkup.28east.co.za
qoz-roomplanner-cert.3dcloud.io
www.aclean-acc.com
app.aguaytea.com
aiguadolc.com
www.alexandrebenoit.uk
alifba.xyz
allthechildren.in
appsnowball.com
aquiserv.cl
preprod.ayun.ph
baumanntennis.com
cucarank.blackstudio.dev
noodplan-bv.blmbastion.nl
seemore.brains4drones.com
www.chatrpro.com
chatseekr.com
checkarna.se
lp.clicou.app
inno-wangsa.co.id
devadmin.2ndhome.co.in
ritikshrestha.com.np
admin.comodohotel.app
www.cosmedical.ca
crsi.dev
currentcollective.energy
datasaurus.us
davidjohn.pro
cdc-dev-web.deepq.app
auction.drivecloud.com.au
easytune.info
xi-dh.elementx.ai
eleventy.be
www.erein.pk
map.fact.house
flykontakt.dk
gillie.gg
www.gonovi.com
www.goodgarden.se
sales.helloqaya.com
dev.hiddenlayers.net
blog.hideo54.com
www.hjrsolutions.com.br
i-area.city
www.msbill.i.ng
neom-cms.itxi.aero
kiran.ai
kom.work
la-chariotte.fr
www.maklr.nl
www.marinacodda.es
www.marketingdeafiliados.info
mattstockton.dev
micahking.dev
yaruki.nargil.net
www.neogold.app
www.nestednotes.com
www.olomed.net
omarharoon.dev
pb.stage.openkind.me
demo.pangea-ai.com
www.signature.patrickroberto.com
www.penekli.com
portaltest.pense.co.uk
carbon.persson.dev
auth.custom.pollamundial.org
dev.api.popina.com
agent.pro15n.co.jp
www.profumeriak.it
prometeu.cat
prorocket.cz
ie.radioplayer.app
ramengps.com
staging.realar.com
www.recordreality.com
www.rolldnd.com
docs.scirge.com
sefan.se
dev1.skillhopper.com
app.sprife.com
morse.stevemaguire.dev
www.stm-medicus.com
www.strikeitgroup.com
www.thecareerconnect.net
thinkeco-innovations.com
auth2.tipsy.chat
trabajoenbuscadesentido.com
app.tryrecap.com
test.uiipro.com
utopia-community.org
visadirectcalculator.visa.com
voxprop.ai
wayz.app
www.whichvpn.com
worldwidetickets.wisecrab.com
link.staging.yolabs.com
yoshitaka-tanaka.com
mccallumcabinets.yuojservices.com
zeeingsoft.com