Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.simonix.nl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 17, 2025
Valid Until
February 15, 2026
68 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
69:12:F5:B6:8A:90:50:CB:98:2F:63:AF:BC:46:3C:30:5E:90:DA:49:49:2B:E2:76:3E:FC:C7:12:32:49:92:9E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
dmap-community.org
doctor.poltekbangsby.ac.id
acesdrive.com
acheistudios.com
vinusphysio.aeglepro.in
albaniagates.com
www.albaniagates.com
amailia.ca
apexwarriors.net
aselsys.com
ashokaainteriors.com
atcalphaconsulting.services
www.bcpps.in
www.beducare.com
beepbyte.com
test5.bepos.io
www.bitpong.it
fallaraval.bracelit.es
camping-les-muriers.fr
canitrundoom.org
admin.qa2.castiron.me
chatbac.fr
chremaflow.com
ciaurumessina.it
www.ciaurumessina.it
cloudxngo.com
coldlavamedia.com
contacts-map.com
axis.creaivelab.com
curtn.de
designincubation.sg
earndeelimited.site
ecocampus-app.site
enerplaza.mx
flourwise.com
www.fortunaid.net
freshbite.in
www.froglow.se
aura-stage.frt.one
fusebox.io
gemtarte.com
office.getsupernal.ai
app.gkagloria.id
vaarahi.gravinx.com
hairloom.uk
heidifuentes.org
ingeneratelabs.vc
inspectorg.us
www.invisibleworld.in
itconsultsexperts.online
www.jleilatygroup.com
factory.jooler.io
abd.kakathink.com
he.kreo-tech.com
www.kusal.nz
www.learnmultiplication.in
lndmont-consulting.services
locate-map.com
mbonnin.net
fdyn.therow.meetalpha.it
app.menunix.com
geoloc.mikangali.com
mindhalla.studio
my-car-service.org
app.mynt.in
admin.mzscorporatespark.store
gsolution.net.vn
surveys.nextiasolutions.com
wisbee.nliteapps.com
openreads.xyz
www.opg-mrmos.hr
opposet.studio
sna.or.id
ouzhouzhifang.com
www.p4rty.io
pay-boy.net
pixeldata.io
qareenonline.com
landing.raidsrc.me
rgbassurance.com.au
www.shadnet.in
shibacode.com
www.simonix.nl
simupro.website
stg-bangumiapp.skyperfectv.co.jp
social-status.online
tv.strukovnasamobor.hr
www.swasya.org
www.ja.talkwell.it
www.talkwell.it
app.tiltsolver.com
tiltsolver.com
www.tiltsolver.com
tintum.app
to-fu.world
www.trivenipoint.in
www.video2textify.com
yamanlanka.com
yams.land
yetii.org
Other domains in certificate