Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.impulseworkplace.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 12, 2025
Valid Until
January 10, 2026
50 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
98:D9:35:17:51:BE:06:3E:46:50:BA:3A:F7:62:90:A0:AE:75:C7:51:13:A2:1E:2B:85:34:F2:E1:E7:1E:C8:47
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
docgen.clouddesk.in
dashboard.abracadabra.red
links-abb.acty.com
www.aoai.gr
www.asefo.com.mx
mypet.brightanimals.com
centsandstories.com
game.cestquoidonc.online
codesmart.co.in
superkidzplayschool.co.in
kalimabeach.co.ke
financials.staging.copyrightagent.com
covidfighterapp.com
crystalwellnessandfootreflexology.in
cuponeradedeseos.ar
dailydishgame.com
davidszou.me
app.decisionrules.io
devplay.app
diva-yoga.fit
divinage.org
www.drashasvijay.com
duzelti.com
www.duzelti.com
farmacialapaz.com.ar
flag21.xyz
whatstaging.flux.chat
fog.haus
www.gatelectronics.lk
daydial.ginkgolabs.dev
memorama.grafeny.com
grandexlogistics.in
gulya.ch
hiddcop.in
www.hillgroveresources.com
menu.hscan.me
www.impulseworkplace.com
www.intelsecureserver.com
www.intermediumemp.com.br
joergpfeiffer.de
kaewsamui.com
jdm-menu-admin.kards.fr
kingsoffortune.com
www.localmakers.com
iyad.marzouka.com
menucloud.ai
www.monettcommunity.church
www.mountiecamps.com
www.movementtracker.app
movies4uapk.download
www.msmacphee.com
mukundenterprisesplumbingworks.in
mundodelasfranelas.com
www.mydesignar.com
auth.nanoflick.com
nuttee.dev
okoshi.net
oligodendrosite.com
tucalendariobaq.cae.org.ec
reserve.otasuke-racco.com
padelplusoficial.com
sumolasrozas.pedidomovil.es
ope.playback9.jp
www.pramanith.com
qiy.nl
qrew.io
rajeshbanta.com
www.redwoodcreativetherapy.com
pixels.schmidt-allgaeu.de
shamsamarine.com
time.sjmedie.dk
merchant.skyexpressinternational.com
old.slush.dev
nobres.gerenciazap.smartmidiasdigitais.com.br
www.smclientes.com
spotter.soinlabs.net
www.soporhojeeu.com.br
www.statusbeacon.com
www.storyy.io
www.stuartmclaughlin.com
www.svalbard.tech
swiadectwo-na-klik.online
join.talentboard.io
www.tarjoman.net
www.taxomics.com
telostech.io
thetravelshop.mx
www.thomasjng.com
timwobith.de
tncollectionsattorney.com
toolsaday.com
admin.tooly.fans
toplodlab.nl
www.upcastsoftware.com
www.vrdenta.com
sindibank.xptoconsig.com.br
yashpatil.me
www.yearvue.xyz
www.zofranaqsha.com
www.zoomcomunicacion.com.ar
Other domains in certificate