Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=clicki.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 17, 2025
Valid Until
January 15, 2026
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
96:3A:EB:55:05:31:D4:70:DF:3A:A1:B5:D4:08:E9:95:03:98:52:BF:84:C4:A3:F8:16:80:95:8D:49:E0:AE:AA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
deanspickle.com
www.acmogroup.com
aleynabosnali.com
almeidapallu.com.br
hannan.anbi-reception.jp
arena64.io
www.astridbang.dk
beatingline.com
dev.client.controladoria.beehus.com.br
bellis.dev
links.borofree.com
dev-app.brivvio.com
bussiere.family
byadigital.com
www.cardgifty.app
clicki.com.br
qaonline.lynxbe.co.il
graffiti-rock-3d.h4.com.sa
foratest.vegayazilim.com.tr
www.hanerkekkuaforu.com.tr
sesionesamtip.congresoamtip.com
www.convergentuae.com
www.cosmicindicators.com
marketplace.creditnature.com
daily.cat
daivikbharat.com
damodarerharikuri.com
www.deliish.app
delon.io
deltaautocantonms.com
desingu.in
machinski.dev.br
www.divtracker.app
landing.esconsulting.it
eventup.lk
www.explorealappey.com
fbiaawgc.com
dashboard-homolog.fhinck.com
www.fresscott.it
futerox.in
www.generalbiotics.com
glampartners.com.br
www.henrykruell.com
thang20225396.id.vn
bics-id-testing.input4you.be
qa-gmm.inter.mx
www.jason-christie.com
kyosen.lfv.jp
lil.day
cal-scheduler-web.dev-v2.logicwind.co
maihang.in
eshop.majasfancy.cz
meshunderground.com
michaelpowell.net
cbre-pilot.mobilitymojo.com
mwgbs.co.za
nappedetable.ma
www.nimamemarzadeh.com
notepals.net
www.prod.supertutor.oakslab.dev
akps.org.in
www.orthopathway.com
patentforge.ai
percap.app
entrant.pharmaawards.ie
www.pirzargar.ir
www.pln.vn
createfarm.pochittoo.com
portalcandido.com.br
www.powerup.aero
docs.dev.ppc-robot.net
qaree.bi
qs4.jp
www.qsmusic.org
qa.qtick.app
raltech.in
app.savia.co
shinganprinters.in
live.silentparty.ch
admin.smartway-ksa.com
www.spaider.tech
zzphase.spurai.com
stenograf.io
sumicity.me
staging.app.talk.bi
the-recitation.com
abc.web.admin.the8th-floor.com
traeguate.gt
www.ultimatefan.ca
unbrokencircle.art
www.uykunuhesapla.com
admin.valdejalon.app
vallamai.in
benefits.vivesmas.co
prsl.whyq.com.au
withdart.com
firebase.xoss.co
www.ymmbulentsezgin.com
countime.yusuf.app
admin.zlatnicesalj.com
Other domains in certificate