Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=agai.bitiniyan.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 06, 2025
Valid Until
January 04, 2026 55 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:7A:03:0A:7D:78:86:A9:65:26:29:2D:AF:CE:94:DD:43:58:E3:A4:4E:76:C5:B1:F1:33:EB:A6:BD:9D:1F:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
ddavid.net

Other domains in certificate

mobap.aboitizpower.com
dev.accidentmate.com
fdlp.aeroconnect.xyz
airbornevisa.com
www.alexandre-paradis.com
new.aloaded.com
erl-app.alyne.com
apjoex.dev
estacao.arabesque.vc
autoescoladrun.com
sitspa.beaconforce.com
www.bergdinge.de
bestsalonmarketing.com
agai.bitiniyan.com
fireship-french.bjarnimax.com
www.blipsy.com
www.blogwithnurses.com
admin.dev.bookcreator.com
bytegods.com
calscreations.me
cancun-excursions.net
beta.casenotesonline.com
admin1.choosebyloxam.com
edss.clinicspeak.com
www.santathadeu.co.zw
store.colapption.com
pje.com.sg
the-top-web.bgmotion.com.tw
deepankarb.com
www.deephabits.com
digimedconsult.com
assets.fadeawaybunny.com
blog.fathony.dev
foblex.com
admin.fordays.com
www.ft8.com
app.fuel-compliance.com
fvostudio.com
www.garyllil.com
www.getroci.com
gom.digital
www.controlpanel.grupobarco.mx
heyhimedia.com
homezz.vn
events-crm-dev.hyreo.com
innerenglishapp.com
www.intouchtool.com
app.invoicetosheet.com
elo.portalcliente.izii.io
yoga-exam.jnecamp.com
admin.joesandcos.com
konfirmed.com
tgaproducciones.kutamma.com
www.laseralliance.be
articles.liberty-tips4.com
lison1livr.com
mdotnews.com
www.mico-animation.co.jp
www.mikrodash.com
portfolio.milselarch.com
evaluate.manufacturing.bayer.mobilitymojo.com
moneymatters247.io
moss.cafe
notchln.com
padelresort.es
www.parlabranding.dk
pascalium.com
www.pastaparmesan.se
www.payasyougohealthcare.com
www.pesepay.com
www.plutosocio.com
l.proside.pt
www.rcvtally.com
api.regenbogen.de
riviga.com
www.ryanford.info
memman.savagealgo.com
scam-edu-blocklist.com
www.shamrockhomecare.com
shutter-graphics.com
www.simplylink.com
app.skinosis.com
souqomdurman.ca
todo.splunderousnoog.com
starbournstudios.com
srs-off-test.statueofequality.org
www.stefanoskarakasis.com
area.sumamachi.jp
www.techlogix.be
qa-elements.thekunggroup.com
stage.thepetdoor.net.au
admin.utoglek.com
link.vareversat.fr
ville.vault-portal.com
www.webeer.io
whydoesitsuck.com
biz.zimlala.com
lgarden2.zsuiwal.com
www.reels.zyadashop.app