Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=javierob.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 17, 2025
Valid Until
January 15, 2026
62 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C2:F7:04:58:01:DF:73:C5:36:F8:64:FE:DE:09:AA:DF:C5:90:00:FA:1A:2A:E0:33:FF:8E:6B:FF:E9:37:31:9E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
epicdlt.com
chat.um-tapsel.ac.id
partner.acevents.com.br
adastra-store.com
agata.academy
agridigital.co.za
k-implant.ai.kr
aljabriyanet.com
alperengozum.com
auth.learn.amazethu.com
ludoteca.anagonbu.com
axbridge.ai
bm.baghera.it
www.brillnet-app.com
burnbryte.com
www.cannonai.io
www.capivarapj.com.br
cbsetest.com
link.cekpara.com
www.chucksapp.co.za
aboutthehomedecor.co.ke
auth.rocketchart.co.kr
leelcheongdam.ajung.co.kr
clock-a-doodle-doo.sonica.co.th
www.colemarket.es
www.colibrisoft.uz
costaricacruisers.co
auth.curipi.com
prod.wizzair.on.decisionrules.io
www.diagnovet.net
admin.diharibrilisah.love
diharibrilisah.love
live.manji.eu.org
www.exelounge.hu
www.femiolawale.com
auth.fftapro.com
www.finelydiced.com
app.fullthrottleequip.com
funzo.club
www.funzo.club
g2gbags.com
www.g2gbags.com
gurmeol.com
www.harutune.name
cuongvt.id.vn
viohuyit2000.id.vn
umeawase.idee-novel.com
javierob.com
todolist.jmagne.fr
backoffice-dev.ka-ching.dk
kshortsleeve.art
www.lendi.ph
www.shop.lepjunkaholdra.hu
choreograph.lighthousesoftware.ca
www.likelygood.com
mutis.lit.cool
b2b.littlehouseboardgames.com
www.logmil.jp
m.mappso.com
markvideon.dev
mathgamedown21.com
test.meandervalleyfc.com.au
rtc.demo.medeintegra.app
helsingborgshem.demo.movello.se
mshco.in
www.next-reviews-booster.com
otv.ningop.com
www.odonthollywood.com.br
stork.oldamalec.cz
www.olieycantho.vn
pokasabores.com
profbobby.com
offers.propowerexteriors.com
fitness.quarkness.com
rayo.digital
resumeedge.app
builder-1.return-value.hr
www.rhmixcontabil.com.br
www.sachsokyluc.vn
punchtmp.sahlhub.com
calcularturnoscoche.saladeprofesor.es
www.shetueai.com
www.sireethon.me
www.skillphin.com
app.slachtoffer.nl
platform.slachtoffer.nl
portal.solexapps.com
soora.ai
spadrianamnl.com
www.spielo.app
agent.swajan.io
www.swivrr.se
testomega.com
uph.lk
grocery-ease.valeera.co.nz
www.verdadebalneario.com.br
www.verkeertrainer.nl
bedahdata.web.id
xonnetdev.com
www.zebuetrade.com
Other domains in certificate