Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.affiliateritual.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 06, 2026 46 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4A:74:78:BE:ED:3C:95:47:9B:3B:64:42:2C:DB:34:14:8D:CD:01:42:21:61:7C:E8:57:9A:8B:A4:E2:E9:8C:48
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
encypherstudio.com

Other domains in certificate

dwr-kongfigurator.3dcloud.io
www.affiliateritual.com
test.copilot.ainexxo.com
aromaklinikken.no
www.atilaz.com
invest.bridgingmedical.com
lojas.burghetto.com.br
www.help.calvarycampo.com.br
www.carolineollivier.fr
www.cramer.ink
delatadyjestetencurak.cz
pnd-5.dev-ltl-xpo.com
dfarquharson.com
www.dreamwb.net
staging.duckorhorse.industries
admin.easytap.co
www.ebusaka.com
preview.eccjan.com
ballz2.nerf.emallstudio.com
www.esakuparinen.fi
beta.everywork.co
ewengallet.be
exgo.one
www.facil-factura.com
test.farmacare.dev
www.fausware.com
home.fiittt.com
www.catalog.flowy.be
app.forgotmylogbook.co.za
www.frostmartin.com
www.funframesbooth.com
devfest.gdgahmedabad.com
greenstoneresorts.com
guessmonster.com
apps.hisa.co
portal.hooch.com.mx
ikihike.com
www.inmemoryoffrank.com
inventarix.com
warranty.jdbatx.com
demo-apparel.jengashop.africa
jiahui-and-sinsian.com
www.jlkiinteistopalvelu.fi
deadlinez.jonbantayjr.com
app.kujibiki.jp
lccouriers.com
letsreto.com
centraldasesfihas.lupi.delivery
luxuresocial.com.au
anlagevermogen.maksellent.com
www.manciotech.fun
kohlipe2sales.mapleworkspace.com
app.markfitness.in
auth.maven.com
link.mcshop.com
www.networthtracker.in
noctisbellator.com
nowzapp.com
app.oddflex.com
mvp-redux.offerdox.com
admin.oiwaikin.com
orchecklist.com
motto.panforyou.com
go.park-me.app
whatsapp-clone.parkadze.com
parliamentadmin.com
pehlivandev.com
app.personelix.com
petrhonkehoufek.com
philipgerke.com www.philipgerke.com
pining.info
instructores.predyc.com
progressioncv.com
qflit.com
validador.rayoapp.com
realtydigitals.com
www.reconhospital.com
www.rent309kelly.com
www.rocket-duck.com
roninlombardino.com
santa-relli.com
savelyapp.com
sdashapp.com
shariqahmed.dev
www.showbook.com.au
snipnshipja.com
www.speedis.money
members.stzaiacathedral.org.au
tamilsongslyrics123.com
mylearningapp.tec.mx
hillsvet-dev.thepetdoor.net
thesocialsoup.com
cnel-ficha.tinguar.com
www.tokyofrequency.com
www.transconvida.com.br
twominutemethod.com
werecite.com
beta.tomat.zacke.dev