Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=hamburgueria294.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 26, 2025
Valid Until
January 24, 2026 59 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
34:46:71:20:BE:4D:2F:20:8B:75:90:63:E9:8D:5D:15:0B:D5:1D:E9:E3:2F:E5:D7:7B:3D:26:10:90:C3:60:6F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
ds.tomyum.dev

Other domains in certificate

30.kotka.rissik.ru
9days.dev
adiosaltexto.xyz
allergy-pal.co.uk
www.andrewcroce.com
tremea.app.br
stetten.avdis.ch
www.blackskye.app
www.brewx.ca
www.bxyz.com.br
www.caitlin.is
chadburn.app
sw.chocopython.org
casaideal.clau.io
www.saiplastics.co.in www.staged.bizzlab.co.in
realize-ssaem.co.kr
compday.no
scoala.covaliu.dev
crayon.pro
vacationmanager.csalex.org
www.davidserrano.io
scuolalebuoneabitudini.despar.it
admin.devfest.cz
dietelefonistinnen.de
www.digitaljsconsulting.com
decode2.eestec.ro
dornbirn-gfc-2021-tickets.enra.app
findhousefor.me
a05s.foodle.su
www.admin.foodstreetpk.com
e-saudesp.prefeitura.sp.gov.br
app.groovekeep.com
hamburgueria294.com.br
www.highwatchsociety.com
hitmedia.jp
www.howlt-coffee.com
nguyennamanh4423.id.vn
igsmconsulting.com
jakeclearwater.com
console-staging.jan8.net
www.jasonharthun.dev
testadminksa.jeeblynow.com
jidindi.com
geohash.jorren.nl
encuesta-clientes.k-9apps.com
www.kalpaniksystems.com
kjnaveen.in
cnsbowl.kyowakirinuniversity.com
app.letsventure.com
locichinese.com
swagger.mbks.io
careplus-develop.medgrocer.io
projects.mesbro.in
pushlink-test1.mint-app.com pushlink-test2.mint-app.com
job.mkg-uniqum.de
mknour.com
moosicole.com
kodenames.morlok.com
munlabs.com
reportal.netresult.app
app.nextapple.com
www.nextgn.net
www.nostumba.com
nflpicks.nuck.app
nunting.ro
auth.odete.com.br
pandapasha.games
www.paulberden.nl
account.petsitterdashboard.com
www.pocquet.fr
pool2b.net
link.throdle-app.q-tests.com
qaptain.dev
www.radekbaxa.cz
www.rafaelgaedke.com.br
www.rentadeautostijuana.com
track.rxoconnectuat.rxo.com
sagemanufacturingindia.com
www.salebolivia.com
save.space
lms.seeraht.school
www.sheepdogsintraining.com
www.sheffieldadvantage.com
coffee.smyrill.com
standuppie.com
www.starpass.io
staging.smart.stickie.link
deviceutility.tapacenter.com
tchabita.com
www.telemoney.app
thrifttela.com
www.trynomadic.com
api.tweethunter.io
www.urbangroup.ie
mission-control.dev.alpha.versify.app
weareup.nl
www.yickka.com