Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=paitec.site
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 25, 2025
Valid Until
February 23, 2026
85 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:AC:01:2E:9E:4E:85:B8:ED:22:3C:58:AD:71:64:1E:4C:34:0E:A5:45:F5:97:61:BA:91:CF:5D:11:C4:D1:EA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
easypizzagja.com.br
brandis.91social.com
www.aadvikteklabs.com
www.adavid.com.au
alexander-vuth.ca
asesoriaalemansanchez.com
ask-q.app
roterabenvilsbiburg.deeplinks.bfansports.com
opensee.bien.ltd
www.bobispix.net
chat.buiviin.com
caniteachmyselfkiteboarding.com
www.christianchandra.com
w.chromium.org
pass.cleverme.app
cocode.fr
91ilife.com.tw
movie.fooyee.com.tw
computingyard.com
old.condedynamics.com
app.construconnect.com.br
dev.culligan.one
dansersautorepair.com
daniel.dasoft.ca
www.deeplink.com.br
dippola.com
draganajevtovic.com
echoelite406.com
btapp.ensobit.de
examefederativo.pt
finditpeople.com
research.fissiosapp.com
fornidodev.ng
www.fort-x.tech
app.gearpos.com
invite.genskill.com
test.lite.getshoutout.com
gomarkets.dev
admin.hateomim.com
xxz6c.podc.incentable.com
miyagisushi.infinitifood.com.br
inmobiliariafenix.com
jordyhers.com
keelewarehousing.com
lamparasyesculturassaman.com
staging.leeeds.de
lekhoi.com.au
lexcialservices.in
liakumar.com
stg.management.litpla.com
verify.lovecastapp.com
lucidnow.app
lunayogawithzara.com
staging-a.m-t.io
gnfoods-admin.m1studio.co
mapnkid.com
blog.matematykagryzie.pl
meltedbutter.co
missionmotors.co.nz
app.modeldinners.com
www.my-car-service.org
nimitjohri.com
www.noordelijkehorizon.nl
app.ottaaproject.com
auth.platform.oxos.com
pagefule.com
paitec.site
parfait.cafe
dev.periscolaire-chenoise-cucharmoy.fr
pestnetonline.com
www.plurial-novilia.tv
beta.pooldatafeed.com
edg.prima.golf
qdmtechnology.com
www.quicklyupdate.com
www.rentmytools.ca
www.runwayspot.com
www.sailingbohemia.com
sanffer.com.br
www.saprayworld.com
app.shipwithmilli.com
travel.smartpick.tech
www.smartps.us
solvethewall.com
soully.co
parlourmax.suwavy.com
app.templyfy.com
www.thearchontariki.com
tools.themill.church
thevideoclock.com
www.tri-notes.com
quick-notion.tsumuchan.app
www.umosys.com
www.vemsagerdet.se
www.wallprinted.com
auth.yovstudio.com
yui-con.jp
www.yuunwateralarms.com
mdcamp2020.zinglio.com
live.zoiclabs.io
Other domains in certificate