Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=appfoyerdedaux.foyerruraldedaux.fr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 15, 2025
Valid Until
February 13, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5F:40:C6:98:7B:08:C5:B7:D6:F1:55:A2:C0:96:84:16:3F:27:9C:A7:C1:1C:F1:11:8F:FD:86:7F:96:21:B3:9C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
dolphain.ai
tegames.dev.1change.co
www.acertar.com.ar
www.advanceautomation.tech
atstk.com
beltranypedreros.cl
blocksonbricks.com
cert.blueinnotechnology.com
dev-docs.borkuafrica.com
app.bracelit.es
chewstar.de
www.cloockie.com
bookonewaydroptaxi.co.in
aceit.com.ng
jump.cozykatmeme.com
deai.chat
ny.digilege.no
digmixer.com
app.dinatus.com
edtvmarketplace.com
edwingtrejo.com
instructor-ca.examind.io
www.exploradogs.com
www.falconrideshare.com
filelasso.ca
www.findfauna.com
dev.flexi-comms.com
spacex.fourrnexus.com
appfoyerdedaux.foyerruraldedaux.fr
gasolea.com
gcskins.gg
getwallet.cards
gsl.tn
guevmartdev.com
gurudevtourtravels.com
admin.harmonised.co.nz
math.hifunite.com
hoanghieu167.id.vn
indfer.com.br
kits.innerbuddies.com
stage-foodcourt.isthara.com
javatechtours.com
shopping.jbwebdev.com
www.johnjliu.com
www.joshuamanlunas.com
jovialknits.in
jupiteruniverse.com
korepetycjewroclaw.pl
www.korroshield.com
lapzomieducacion.com
laslilasodontologia.com
lestarijayabeton.com
ayuntamientos.lovi.ai
luka.to
mayngames.com
saral.melzo.com
memorialdayquotes.com
mgelxdesign.com
mijardinjunji.cl
www.mimercapp.com
admin.monebakeryuz.uz
roberta.moneymio.ai
critterpedia.moppler.co.uk
myfndapp.com
mygreenloudoun.com
mygrocify.com
onyxascot.com
advanceelectrical.iotbit.otobit.com
protector-of-balance.de
www.rafiqstudios.co.uk
us-pa.spotlight-staging.recidiviz.org
inventory.rouic.com
saintleodegree.com
saveourenvironment.de
scaleoftheday.ch
vue-firebase.scaramuccio.dev
sethbailey.dev
simonfarruqui.com
smilepromotion.cz
solarazimut.tn
blog-old.srikavin.me
b2b.streekproductenplein.nl
stv.vn
www.superhire.xyz
www.teamts.xyz
followme.thai.run
auth.thegamut.in
login.theorie-toppers.be
kuromasu.therestinmotion.com
tohyamago.org
travisandjerrica.com
trimbleconnect.hu
www.tunestory.shop
pre.tyrata.ai
app.uhub.app
octopus.vadiim.com
vertisimobi.com.br
watchly.tr
discord.weplaygames.fun
zenethosgroup.com
Other domains in certificate