Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=prode.lattedigital.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 19, 2026
Valid Until
July 18, 2026
60 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F8:3F:B4:59:BB:62:A8:35:F1:F1:E0:8A:EA:AD:20:57:D7:18:D4:9F:2C:D3:17:80:A0:7A:B6:48:26:ED:F5:A7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
deltaeanalytics.com
app.dev.adacreate.com
www.aerosolutions.xyz
ahlrp.uk
student.alignedwebdesign.com
amcsoftware.pe
anadoludislaboratuvari.com.tr
www.anandnova.com
apprendre-l-heure.fr
tarot.aqutoqo.com
ashraf-haggag.com
expensy.astrosmic.dev
ayo-oro.com
www.ayo-oro.com
admin123.bardeko.in
painel.carbee.top
chubaohonghoctiengnhat.com
pr-dashboard.codewalnut.com
suter.commulino.de
dummyhosting.crocoitalia.com
daihatsu.de
danielhess.dev
devosconcrete.ca
seizing-the-crown.diegeticgames.com
app.diversedreamsai.com
q2-track.dpdlocal.co.uk
droplink.dev
dynamike.se
ecomstormacademy.com
www.ecomstormacademy.com
www.edenlabs.io
elentis.de
excellentchinesedrimnagh.ie
edtech.foodladder.org
www.funcla.org
glapsides.com
app.glusteady.com
goimedia.com
halkoptik.com
iambharat.me
ilponteinvestments.com
product.indyriot.com
dev.jinane-consulting.com
jingleplugin.com
katuai.app
kurti-chisti.bg
prode.lattedigital.com
leadandsales.in
www.leadandsales.in
store.lepetitpapelaria.com.br
lodionan.com
love24.site
lubdup.com
staging.m2worlds.io
www.m8tech.in
qrcard2.marketingverbund.de
meridianwealth.fyi
mytripmate.com.au
nafees24.nafeesapp.com
www.onlymentalhealth.in
www.orcolaxo.com
www.orhazeev.com
www.osdata.es
www.pairrd.com
www.palsinghandsons.com
tropa.patricktingson.com
perkonova.com
sales.perkonova.com
docs.polymarket.playbatman.com
ppperson.de
cloud.prima.golf
www.quentinleon.com
www.raizvivaestudio.com
rektplay.com
www.rektplay.com
restauranteinteligente.pe
scladpro.ru
meet.sentiovr.com
www.simplykooi.co.za
www.sippegwzdone.de
www.business.sportshi.io
steamania.ru
sultanfriedchicken.com
auth.switch.org.za
synapzedigital.com
www.tabcollect.com
inventory.thebluffworkshop.org
theplayground.love
tutordex.app
ubytovani-cernahora.cz
doacao.umchuteparaofuturo.org.br
usaareacodea.com
selec.vbueno.es
halftone.vestera.as
homes.visionhomesgroup.com
vlssolar.in
www.vura.uk
wonderlab.no
dtr.wrkpod.com
api.zoomsystems.com
Other domains in certificate