78/100 SECURITY SCORE

Certificate Information

Subject
CN=norc.co.th
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 26, 2025
Valid Until
February 24, 2026 38 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
75:37:28:43:0C:F7:F5:8C:85:98:59:60:0C:CE:4E:1C:FD:6A:D2:F3:69:E7:34:1B:8E:5F:A3:55:FB:CD:57:54
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Weak
require-trusted-types-for; report-uri; object-src; +3 more
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
dynamic.jump-navi.com

Other domains in certificate

dwr-roomplanner.3dcloud.io
acuteplus.com
lms.aifer.in
alfilomaletines.com.ar
www.anze.dev
ashleydennis.dev
www.assistheo.com
atl-gs.com
atv-maxitrans.com
ngskampongchameclass.auxswot.com
backlinkgap.com
balcony.hu
www.booking.bartonendstables.co.uk
scholarship.bestdiplomats.org
www.blabberblabber.com
www.bobyan.net
www.bralife.com.br
bytecraft.in
carlaustin.dev
cartoons-in-lockdown.online
cidimagenesrd.com
clubapp.com
link.heliot.co.th norc.co.th
consultus-tech.com
www.cruxcode.io
darius.cl
dhruvaspace.xyz
www.diegodiniz.dev
digthatgroove.com
docvita.in
drycodetechnology.com
www.dsautomotive.it
xwaien3qe.easyapp.co
www.emilu.it
emmanuelm.dev
empleo.gt
admin.espoonstarwash.fi
dev.estomatolog.com
evoluciondigital.mx
filmseriesnft.com
app2.firstchoicepos.com
flk.app
validator.getviral.me
staking.goldefy.com
gurumutongashadrack.guraxis.com
www.hccoba.com
www.heatdresden.de
2018.helswingi.fi
historiaparaviagem.app
homecomfortair.net.au
www.how-many-bees.com
immyown.com
ishanicrackers.com
www.jbit.no
jeddai.com
jennchance.com
www.jobertol.com
www.jobtojob.org
justtrack.co
kabeko.com
www.kelvinhsu.com
www.knoxwallens.com
lizloveslocks.com
mageicons.com
www.mogulmob.com
monbeatdanstoncrew.com
naimb.com
app.nimdeeapp.com
oguzhantuna.com
www.ozgogetters.com
e.panoramaglobal.net
www.phieudexuat.online
rafflespin.com
raisecollective.org
rashidwassan.com
dev.relion.dk
www.renebodor.eu
l.resdiary.com
dev.rgateway.it
sergioscaramuzzi.ca
www.shapir.org
www.shaswatengineering.com
shooniyh.com
www.singleuse.io
www.singui.ca
soma-festival.com
www.spurintel.com
mobile.technicalwater.app
theglue.jp
app.truetoform.fit
www.tuplazaideal.es
unbreakquality.com
integrabus.vbrnet.com.br
eu.widgets.vezham.com
vrutti.co
thatsnotatypo.writerduet.studio
stream.wyzetalk.com
www.zempoaladestilado.com