Open
Cached
·
just now
91/100
SECURITY SCORE
Certificate Information
Subject
CN=www.cookwhatyougot.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 10, 2025
Valid Until
February 08, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:84:25:3D:38:3F:AE:09:D7:89:4B:FC:38:0C:36:E5:68:67:BC:D0:7E:73:70:8B:C7:06:13:E9:16:51:CB:A5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
eclypsium.io
www.121servicesltd.com
www.accedeceramics.com
www.accedere.ai
agilitelabs.com
ga.andiindia.in
antz-insurance-company.site
arnoldomuller.com
chess.aryan.app
astra-jpn.net
azyxx.com
www.bdbhukuk.com
app.bgorder.com
ratemyhairdresser.binarybridges.ca
bissy-apps.com
www.bouncedaily.in
www.bowstr.ing
dw.canarydwarf.app
capitalloom.in
circulodebienestar.icu
www.close2source.com
cocodillo.xyz
code-printer.app
cole-cirillo.com
www.cookwhatyougot.com
dakshayanthra.in
excalidraw.dalexanco.com
www.diphylleia.com
drying.app
dev.edsys.com.br
edukamu.fi
learningapp.emilyandholly.ie
staging.eva-zeus.app
fisiobiz.pe
citrix-qa-ideacloud.forgedx.com
getunit.fit
www.gilgalexploration.com
kebab.glaz.dev
www.grupo-jaso.com
www.gustavoelprofe.com
auth.homeisroost.com
www.humbltokenengine.com
hunterhackley.com
ice-flow.ca
cdn.improvefy.com
admin.inventoryhero.store
jebavilascompany.in
kardia.app
kaybury.com
www.knowkard.app
lafamilleaitali.com
lanacole.net
lemonbox.com.au
lendmo.com
lifediary.app
malharkulkarni.com
mandelbrotset.xyz
www.maxbielenberg.com
www.medetirraneo.com
meetian.com
www.mirandushub.com
mnmlabs.com
www.nawamkarki.com
thoothukkudi.onewaytaxiwala.com
pathmagic.org
weather.patrikstorm.fi
pnixsoft.com
stage.poll.ly
qaraabah.com
qsoftsolution.biz
quantaxy.com
quranemubeen.org
reapaka.co.za
www.rivierewater.com
rootschocolate.com
rudaina.org
sara-boutique.com
schick-ebert.com
dev.scraperscript.com
shirshendubhowmick.dev
snowywrites.com
www.srikrishnaglobal.com
starelai.com
sugilchill.com
presale.tapbased.com
landing.techmorif.com
www.techovating.com
tekarhq.com
terragusta.be
tiria.org
tkt.travel
univclasse.com
app.unlockpuzzle.net
varunpanambur.com
vietdogecoin.com
app.viperking.website
vitails.org
vsoftinfosolutions.com
woly.app
yazhsoft.com
Other domains in certificate