Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=rhoba-chemie-kalkulator.enra.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 18, 2025
Valid Until
February 16, 2026 83 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
80:9B:57:C2:33:7A:9D:E7:04:5F:F9:EA:AE:7D:48:36:D3:E3:32:18:09:E8:99:5F:72:C8:40:8E:28:3F:CE:A6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
eficientis.app

Other domains in certificate

staging.www.abccopyco.com
accidentmate.com
myproduct.agileteknik.com
aiappsculptor.com
sm.alifedu.org
allisone.me
colors.andreikaras.com
andrewabu.io
annalyza.com
anthillnet.com
apexpairs.com
www.arbusai.com
architecturalwoodpro.com
armageddonclock.com
audienceinsider.com
www.aventureholdings.com
www.axadal.com
voltajeselrayo.koomer.bamtech.cloud
basel-academy.com
beacham.org
staging.beework.app
testing.blueaccess.co
bravelittletiger.com
admin.stg.briix.com
buckleaf.com
www.buntagon.com
calgaryquartz.com
bicazel.ciucky.com
co-core.io
www.conemlabs.com
staging.dashpet.dashmote.com
lnh-ops-s.dev-ltl-xpo.com
digisquare.org
discdyetracker.com
rhoba-chemie-kalkulator.enra.app
ethereumpostalservice.com
eventosmd.com
ecal.fairycat.biz
flavioosh.com
foundyou.chat
french-creations.com
froqa.com
globalpilotlog.com
hailam32.dev
accountex.hedgeflows.com
hlc.helioso.com
www.heyava.ai
hodotomb.com
app.homerun.com.mx
www.hugbug.io
immonotify.com
www.inovexa.software
admin.insungdang.com
stallblad.intendo.app
resumengrupomexico.inter.mx
jagomo.de
join-the-field.ru
www.kapilfahrschule.ch
zebrabox-fr.keynexis.com
klicktape.com
knewtrons.com
lafayettewarner.com
dl.latweb.au
leonardcheung.com
libscat.com
linkalternatiflotto03.online
www.makosocialapp.com
mementolanguages.com
www.mesero.cl
www.mewer.se
mfgsolutions.com.br
agendar.moons.pe
adm.navigatetrip.com
mpubkit.newgen.co
www.events.newschool.edu
rewards-uat.nustar.systems
www.ovwrstudios.com
staging.admin.payaca.com
concept.portfoliolink.co.za
link.pump.app
www.reciproitsolutions.com
www.rovee.app
connect-ng-reports.rxoconnectint.rxo.com
clientes.savia.co
mcontrol.sharkodile.com
jacksonvilleshuffleadmin.sqwadhq.com
bodakatherineyeduardo.swanmoments.net
ceo.tailorwish.com www.ceo.tailorwish.com
teaplane.com
nextlogin.techcompose.com
telefeast.com
reg-dashboard.testograph.com
stg.admin.thermolog.biz
nudge.thestpc.com
lcsf.turnosweb.app nordic.turnosweb.app
android.uttarajavatraining.com
voltistudio.com