77/100 SECURITY SCORE

Certificate Information

Subject
CN=niedermayr.tech
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026 66 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D6:42:0C:59:FE:64:B7:1E:5C:96:DD:EE:90:F3:09:7F:F7:A2:99:51:3B:62:22:F8:33:7D:1D:B8:4B:5F:7C:D0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
developerweekend.org

Other domains in certificate

agentflock.ai
www.altheafisioterapia.com
andychien.me
tgs.energia.app.br
www.arvin-dienstleistungen.de
www.backendengineer.net
barkingmudpuppy.com
notes.bitcrypt.in
www.bitwiser.io
cah.brandeddreams.com
www.budaestates.com
bunbuy.ph
anomalie.cantinedellacorte.com
chatkawgorach.pl
www.clockworks.app
nbsecurelife.co.in
management.msosidrop.co.tz
stopcovid19.codeforyamaguchi.org
belleplainenews.column.us
ozturkmakina.com.tr
creanima.link
d.development-venzeo.com
dirtlogix.io
www.ducheffmarmitex.com.br
esprit-daffaires.fr
experilink.com
familytrunk.me
menu.foodmine.ca
fornestresorts.in
admin.gallosmarmol.com.pe
arthur.gerst.fr
getinthebunker.golf
www.gianmarcomaurizi.com
haseeb.no
highperplexity.com
my.hoxby.com
www.injector-stud.io
iskcondamodardesh.com
www.islauriemetcalfonbroadway.com
aa-g40.k2m.ca
kacknerd.de
www.kellyseniorconsulting.com
kevingorniak.com
www.kubamichalkiewicz.com
lafiny.com
laukkamaki.fi
leadnest.es
leafapp.fr
liduan.com
emp.rpr1.locobear.com waiver.rpr1.locobear.com
www.logangutknecht.com
mannkann.ch
mimicgame.com
www.mindgraph.co
link.acc.mobilea.nl
translate.moony.dev
mrgregtattoo.com
staging.console.mtrfreight.com
pic-lottobayern.mentor-stage.neccton.com
netscan.nickcircelli.com
niedermayr.tech
cliente.nopositivo.com.br
notatia.org
www.novax.space
ourtruejourney.com
order-at-table.3brasseurs-reunion.mercurest.paymytable.com
payonic.in
pishu.ai
link.project-s.com
littlehavana.order.pulp.eu
www.qadcebos.net
www.qodeshengineering.com
crau.queliga.com
raysun.page
console.reach-dev.me
go.relocity.com
beta.remente.com
auth.repeat.gg
www.replaced.app
rudymartinez.ai
app.scottinternational.com
servicelinq.net
shoutout-fan-demo.set.live
www.shotty.dev
shukatsu-raize.com
simonborroughbookdesign.com
auth.smartpeek.com
blog.tanakamidnight.com
connected.taoth.app
blogs.techstapel.com
www.tecnical.dev
tracktogomax.com.mx
loan.traware.com
www.vtcsevilla.com
docs.whoispresent.today
www.whychildhoodcancer.org
barcode.yseer.com
zezula.co