Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.lesprit.co.kr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 24, 2025
Valid Until
March 24, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5A:59:9B:08:E2:7C:E2:9F:05:05:D2:CE:83:B7:DB:4F:69:33:14:16:78:08:90:70:78:1E:4A:E6:79:17:BF:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
diegoabreu.com
absysenergie.fr
www.absysenergie.fr
getapp.ajobox.com
tiruppur.akdroptaxi.com
news.alarmcad.com
apurvachoudhari.com
trade.ardacar.com
www.arvorakenne.fi
autotcn.com
aijobsuite.bankhosa.com
datx.bharat.id
tickets.bharat.id
forum.hkccda.blackmedia.hk
studio.bloch-labs.com
www.bouncyflappy.com
budgee.cz
cc-ibl.com
www.cipbc.com.br
www.cloudscaff.com
dev.jama.co.il
beta.mfit.co.in
www.mvindustries.co.in
dagmaland.digitalreceipt.co.ke
www.lesprit.co.kr
codebycutting.com
myaide-report.cogmo.life
cjonline.column.us
www.agility.com.vn
comfortbusinesssolutions.in
www.cruxlarp.com
csdigitaltechnology.com
cultzyme.com
watch-party.darkplace.dev
staging.dentconnect.dentdesk.ch
dev4dose.com
devdocu.com
www.egraft.eu
www.emmanuelm.dev
alexandre.harano.eng.br
es-saudi.com
www.florentpetit.info
maintenance.fsfleetwms.com
neuro.gravitonweb.com
www.hrparafinserv.com
go.imobsoft.com
script-api.staging.impactproduct.com
www.indexall.net
www.internationalconsumables.com
intramedical.net
conghien.kasoft.vn
kursatufukcoskun.com
app.liesa.care
www.maisons-du-phare.com
www.mandacoin.com
www.meaf75.com
auth.mitene.live
www.modulmix.fi
nixonite.com
www.numeddiagnostics.com
portal.odysseypensions.com
links.opc.eu
auth.customer.ownhome.app
paritou.com
m.penerbitkbm.com
pinheirodrywall.com.br
next.psytracker.com
app.qanda.link
delta.bookings.ratality.com
www.renansujii.com.br
riyamakeover.in
rusanto.app
sandblad.com
sans-facon.com
sateek.co
sdorica.com
cpns.segitiga.id
siebertcruz.cl
smokeylane.party
sophikon.com.br
sostshi.com
kol.sp2smalaysia.com
www.sprogstimulering.dk
portal.streetnode.com
www.suncreekrv.com
marketplace.swapaholic.com
tetra-ai.fr
policies.theislamicnation.com
admin.thelokal.my
kami.tirtapatriot.id
type-fu.com
www.viatrisvirtualboothpcom.com
i.wasurge.com
wecaredentalclinic.com
www.weroapp.com
wolfpackevents.co.uk
www.xstragard.com
www.ydiva.com
www.yobus.org
v1.client.zlawyer.fr
Other domains in certificate