Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=jonathanchristian.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 23, 2025
Valid Until
December 22, 2025 44 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AA:5D:2C:6E:E0:A1:98:66:AE:E8:2C:C0:D7:10:68:BA:6E:9F:E5:CC:21:53:89:EC:11:B2:6B:17:DB:87:1D:C2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
diyers.com.ar

Other domains in certificate

www.aadhag.com
e.adoreoyuncak.com
www.alexacea.com
uk.ambersoftware.net
directory.amchurch.com
www.angeldao.org
www.annamyznikova.ru
www.atacankat.dev
api.atyabtabkha.com
www.onsite.auto-sift.com
partnersdev.bakarta.com
themcu.bilalakkil.com
binalert.co.uk
www.blackdogearthmoving.com.au
blotzpension.com
share.bouncyapp.com
business.box.gr
links.ramazansancar.com.tr
openpgpkey.2xist.com.tw
client.staging.copyrightagent.com
corazon.coffee
cruxlarp.com
dentistabraga.pt
derbytronics.com
devsog12.dev
login.digishare.io
admin.eeule.de
pre2-backoffice.eldiario.es
d.enzaime.com
portal.estations.vn
folio1.evansende.com
fastdag.se
auth.findyourgrind.com
www.finestdoorsmiami.com
dev.docs.gabismartcare.com
getswarmrewards.com
giuggioli.net
www.goldway.tw
sacredgeometry.golightlyplus.com
shehryar.hanadigital.me
business.hopsapp.com
www.hpschrei.com
husku.net
www.iloasiivoukseen.com
innolandsolutions.com
intrwov.com
jitbuzzaff.com
game.jlmmg.vip
jonathanchristian.org
buzz.khonology.com
test-logistics-app.kitkeeper.co.uk
www.korjausinfo.fi
ksomediacell.com
api.langoon.com
lightassistant.com
manbo.live
admin.manifestfinancial.com
manwey.com
www.marcosmhs.com.br
cardapio.meueleve.com.br
login.mightytext.net
missfruta.es
mitenand-arth.ch
mtc.cc
www.muchenagumbo.com
www.multi.holdings
www.nbtasks.com
nouns.love
olostan.me
app.omyfu.com
www.oneclick.tel
app.onepicktipping.com.au
preview.sandbox.payo.com.au
pedeae.com
www.pneu.md
poolside.life
admin.pro-solutions.net
razeprotocol.dev
recursionaudio.com
dcm.reflect.page
cl.sallybeauty.lat
www.santrex.de
omelenco.sevenbsoft.com
www.shopyesim.com
skolkovo-park.website
www.sophietrocmez.fr
stinkysox.net
teamallsports.com
wheel.tedpayne.xyz
organizer.tickit.co
desativado.tomasgoncalves.me
trustbar.io
www.umetna.com
register.unicainstancia.com.br
welcome.dev.upnext.in
vital.cloud
www.wasatch.ski
gll.webplayer.fit
www.whatchado.de