Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=admin.rocola.es
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 13, 2025
Valid Until
January 11, 2026 57 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
41:9B:C4:58:BF:69:83:1F:6B:56:3E:5D:84:E3:16:ED:C1:70:CE:99:EA:A6:A5:7D:AD:6E:03:8D:5C:37:6B:F1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
erfolgsgedanke.com

Other domains in certificate

tegames.1change.co
app-pro-dev.1stcutoutings.com
www.abbysage.com
abyssos.pl
www.actuary.studio
anlorbel.pt
app.atclinic.us
btec.benning.de
pwa.biobarica.com
links.bookaway.com
app.braunch.io
cilkencave.com
pandahousemarbella.clau.io
referral-cp.ipick.com.my
www.ambulansim.com.tr
admin.kimcuongkita.com.vn
j.curve.app
www.cyrilpillai.com
daswebsite.com
davidmavrodiev.com
diyonwaterpets.com
help.dn2me.com
www.dnlconstructions.com
karur.dropstaxi.in
earlytonow.com
forms.elvesapp.com
dev.coach.emmengeeftenergie.nl
essentialsofharmony.com
www.everybodymath.com
feelperformers.com
admin.stg.fhsis.org
notes-test2.fieldmargin.com
www.fishartlab.com
web-jobs4neets.formprof.ro
refuge.foundry.church
quiz.freizeitpraktikanten.de
fuadchonora.com
getaplano.com
giulia.net
play.guildgame.net
heladeriaincontro.com
www.honwelov.eu
customer.ilearnquantum.com
thiepmoi.inin.vn
insighteyewear.in
www.jawns.us
jeroennicolai.com
www.jobeestaan.com
joshv.codes
www.juklev.com
kill-the-king.com
beta.knoxpo.com
admin.lafloraison.store
dev.manager.leasera.com www.dev.manager.leasera.com
domnul-presedinte.lerimas.com
www.intranet.lukarma.ro
madinatalilm.org
pruebascomp.mailconversion.com
mbvnegocios.com
sorteo.myrealfood.app
myrecycleguide.com
app.onrech.ch
perrylauren.wedding
pinbooks.in
www.prayerwall.church
www.pushleaf.com
quacktravel.com
beta.quantified-self.io
rei.realwebsite.com
riftauthenticclothing.com
admin.rocola.es
sandykoummarasy.fr
satmanipur.com
www.seekersandadvisers.com
sfp.si
demo.app.shippio.io
mapper.sksis.ca
handelshogskolen-uit.snapmentor.no
cards.snazi.ca
socraticowl.com
buy.speak-digital.com.au
demo-fr-web2call-code.speakylink.com
774inc.spwn.jp
starly.io
cdn.stg.study-habits-dh.com
tailoredmediaplus.com
www.targetedthreats.com
teplickycimes.cz
theblack-app.com
www.thenetninja.co.uk
ks.ti-m.ch
www.timbermind.co
valopas.fi
www.tienda-demo.verifico.co
www.vokno.ru
shortlived.werzq.cc
wimboat.com
www.yitt.jp