77/100 SECURITY SCORE

Certificate Information

Subject
CN=heygrady.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 22, 2025
Valid Until
January 21, 2026 76 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EA:6E:CF:48:89:8D:CC:15:61:06:9A:95:77:DC:A2:77:F2:9C:47:21:8B:56:9C:53:56:A6:80:61:66:C3:C1:DE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
dyn-preview.automobees.com

Other domains in certificate

blog.achristoph.com
www.alexis-mandin.com
devdash.allbutnew.com
alquilervacacionalbarrosa.com
www.asahichemtech.com
www.akarhukuk.av.tr
app.biodimed.com
borhomey.ru
www.brismassage.com
buildthenmarket.com
firebase.cacauchaua.com.br
app.cinchtry.com
lagoa.clinicasodontoprime.com
mtb-israel.co.il try.gyme.co.il
www.qrtochat.codewithbishal.com
flutterbudgetapp.codingliquids.com
apps.jomrenovate.com.my
www.harmonygirlshostel.com.np
en.hc-ec.com.tw
link.companiions.com
www.dazzleui.pro
dev.deliversense.com
devshroff.com
ejpierre.com
staging.itp.esad.pt
eudajung.com
app.fakerjsui.org
www.fcnoro.ru
isi.figure1.com
www.firstaustralianscybersecurity.com.au
www.forgingsocial.com
frostmartin.com
fusiondesk.dev
geniedevs.com
giantsquidtracker.com
link.go2bank.com
maya.congresoqroo.gob.mx
heygrady.com
hiroyukihp.com
honestyfirstrenovation.com
iampage.dev
dinhviethoang.id.vn
www.indotech.ca
www.infotechca.com
www.ingilizceozelders.org
www.intohyvinvointi.fi
jeancolin.com
thrive.jeff.fitness
k-agent.com
www.karega.com
www.koralkynahradbach.cz
www.kussha.com
www.lagas.com.ar
laszlonorbert.com
online.staging.learnlink.no
magnimcontabilidade.com.br
todo.mattsturdy.co.uk
servery.mcgu.dev
mdlab.pl
legacy.meetjimproviz.ru
test-tving-portal.moloco.cloud
www.naitsmania.no
napcomputers.in
noomlo.com
app.odbf.ca
www.patiencecompany.com
www.portalibg.com.br
www.puiatti.com
www.qoftheday.co.uk
www.reportwritingtraining.ie
timer.resamsel.com
review-salons.com
www.ringspirations.com
www.scala.dev
schoolandai.in www.schoolandai.in
d.siriusplataforma.com
siuv.ch
www.socialcurrency.in
sushijackdelivery.com.br
suspicious.link
www.sustenergo.com
www.tcgpacks.com
etfvsa.tcontur.pe
app.staging.thatch.co
vna.thepetdoor.mx
mouments.timp.io
app.trendio.dev
turningleafcounseling.org
www.ruhosfoxi.txs.hu
beta.uberchip.digital
varsharamachandran.com
app.engage.stcparks.voyagernetz.us
www.wattagam.com
younite.xyz
www.yunzhou.co
www.zenithconstruction.net
auth.zobaze.shop