Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=bierbord.nl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 31, 2025
Valid Until
March 31, 2026
77 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:9E:A4:4E:20:BC:47:0C:DE:A7:C0:81:47:67:2B:61:43:B7:D4:FF:2B:FE:94:2F:7B:4C:5A:34:C4:01:33:08
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
domdaria.com
44llc.ooo
map.abandonedrabbits.com
aig-costco.affinity.do
www.ahn1967.com
baby-dev.ai-saloon.com
app-aider-ai-staging.aider.ai
data.alericdlafarmaceutow.pl
www.alexsalov.com
memoria.andrewcutler.info
www.anodestudio.com.au
tiny.anodot.com
appreasy.com
api.appres.org
voiceback.audeering.com
auratels.com
www.axerapy.com
app-staging.betareader.io
bierbord.nl
world.biozone.com
order.bluetokaicoffee.com
www.businesssupportpartners.com
www.bytecraft.in
chrisavellis.com
www.clarityapp.in
studio.colourhouse.se
e1.com.vn
compasswallet.io
conniegonzalez.mx
constanzehaas.com
www.cyberkafe.in
www.cybernetex.org
deanwagner.info
split.dekkpartner.no
dlex.io
docteur-fischer.fr
fish-bowl2.droov.io
earg.org
eddiefls.store
www.ekkotech.de
emreedurmaz.com
requestl.ertech.com.co
expoplace.shop
www.fashfoosh.com
www.fire3d.design
test.authentication.fullmarks.io
www.gatheraustin.org
www.gleb-abramov.de
gods.gift
www.harmonyplume.fr
www.huahlabs.com
www.huisly.nl
admin.inteliped.online
shopping.johannesmaximilian.de
kinoco.biz
imefu.lapieza.io
www.ibu.learningsuite.at
web.lessonkeeper.app
longviewtexasselfstorage.com
www.loveboataartenpaul.nl
luckybots.us
www.macropad.es
eterna.miapppro.com
www.mmcallsapp.com
morgan-photography.fr
nadjaundloris.ch
display.nebraskafll.org
flutterpainter.omarhurani.me
trial.onepms.net
otomedia.ca
lyfja-onfleet.pan.is
ops.takanome.pirika.org
www.play24.stream
profiserban.ro
api.proper-ly.com
forum.questgames.net
www.qzip.in
ravaidliresearch.in
rcsbf.org
russellfam.org
website.rusticcitrus.com
www.samarteducarenursery.com
www.schoolgestio.net
www.shreemanjunathagroup.com
skiclick.com
mci.snapmentor.no
www.sprel.fr
bodaandreayemilio.swanmoments.net
phoenix-api.talentlytica.com
tgif.my
thewedding.rsvp
tulukabellavista.turnosweb.app
uqfintech.org
mmlive-staging.viuing.io
www.wander365.in
www.xcolons.com
sociobridge.yourfirstad.com
www.yummy-app.eu
www.yunusemreozturk.me
www.zealluxe.in
Other domains in certificate