Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=fb.newskit.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 10, 2025
Valid Until
February 09, 2026
76 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:11:8D:7F:B5:D0:E2:9E:02:44:2D:8E:AE:1D:63:F2:C2:67:64:F4:8D:C0:B9:81:43:CA:B5:DF:38:52:62:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
data-zoo.de
agrimocks.com
aiimgtools.com
airforceecho.com
arcan.do
asmhesap.com
www.azutaku.com
badmintonvalladolid.com
admin.balcaodeempregosdigital.com.br
bentinel.com
berthx.io
auth.beyondtabletop.com
bhaktiverse.com
ai.biqpod.com
bolognesa.uy
brandingco.in
buddytechsolutions.in
buildimprovementsolution.com
cashscout.app
famousfood.co.in
www.mkrevents.co.in
jooanchemical.co.kr
pay.narma.co.kr
consensusweb.app
www.coolheavenhvac.com
smart.ctwd.com.au
customerrelationsjob.com
danielacevedo.dev
copilot.data-insight.biz
digitaltext.cloud
divshot.com
elithair.app
scottcountyrecord.enotice.io
etezolin.dev
devlive-share.everest.io
www.freee.com.au
getbookwise.app
globalvisaconsult.com
www.hirock.in
hiszpanskiangielski.com
holdrightgames.com
hospicemejorjuntos.org
hotelizegestao.com
meningitis-matters-2.intechify.in
jardindeamorgt.org
jobxapp.com
kingprotea.jp-hermit.com
kada.se
www.lbbw-live.de
www.mafiahub.dev
dashboard.staging.manifestfinancial.com
markusip.com
medmindshealthcaresolutions.in
beta.meuplanoclaro.com.br
www.milvintsiss.com
moodoodle.net
www.myreshn.com
mytenantfinder.com
neko-jinja.com
fb.newskit.com
www.nourykhayatcs.com
nri.app
observatoriofpc.pe
admin-test.pangosports.com
www.paqua.com.br
www.pearlcreationsllc.com
app.photoshoot.ai
test.pogchampz.com
www.prajak.com
profitpoke.in
jepsonnorthwest.quetzalpay.io
kyc.realtimeaf.com
techdashboard.regalix.com
reycorenovables.com
round-room.net
www.rustaqi.art
trajeto.safepet.lat
servicefy.co.uk
shopmyinfluence.fr
sikgu.kr
sinanbolel.com
learn.smartmagic.io
admin.snaptab.ch
www.so-fa-mi.com
www.statefulcoders.com
strmkick.com
dashboard.supercheckout.ai
auth.switchboard-ai.com
synapse-solutions.cv
www.tabingo.com
textguard.co
invite.tgclab.com
thaiveng.site
w.tianrens.com
todoenmental.com
www.ugandawaterforlife.com
links.venez.ma
xlinkify.com
zenwriter.app
zerohourswork.com
Other domains in certificate