Cached · just now
80/100 SECURITY SCORE

Certificate Information

Subject
CN=www.tourenplaner365.de
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 28, 2025
Valid Until
March 28, 2026 75 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3D:5B:B8:D9:EA:E6:33:DE:BF:92:58:12:86:5E:C7:B7:36:3C:2F:9C:06:51:47:88:28:18:65:AB:AA:CD:D0:CA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • You have authorized 6 CAs - consider limiting to only the CAs you actively use
  • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts

Subject Alternative Names

100 domains
eventhon.com

Other domains in certificate

a-2s.com
item.adora.gift
www.aeternumcreations.co.za
reload4u.akshy.dev
alastaircox.com
allpeoplepower.com
eastwest.alpinemedia.com
app.altavitis.com
amrshams.com
anasheet.com
autocallbox.com
avinashdeomotors.com
adeem-test.awaed.co
www.aysconsulting.co
below-msrp.com
benjaminali.com
bidonad.com
www.bikeslot.com
biory.app
qr.blgfx.com
camboapps.com
casperdesign.no
profile.chippit.co
www.cirro-numinous.com
cmstern.com
www.cmsxpert.com
yakirv.co.il
cooiny.com
danielladner.com
www.danpride.com
datavizitservices.com
hotovo.deskbooking.app qiagen.deskbooking.app
www.devayansarkar.com
doxifly.com
www.ekelz.com
entrenarte-estudio.com.ar
eten-corp.com
futureliving.app
gmailmeter.com
collect.gotrendable.com
greyspacenetwork.com
www.group-ab.com
www.herpotentielle.com
highvaluegrowth.com
www.hippamate.com
ankhang277.id.vn
insurrectrebellion.com
izaanfootcare.shop
qualicliente.portalcliente.izii.io
tui-widget.joinsherpa.io
kidlaugh.com
admin.kidsupsoroban.vn
rutas.lacasaamarillamty.com
lawrencechan.ca
admin.localsearchweb.ch
madulus.com
www.maiddee.com
cookbook.martin-choraine.fr
maziwake.com
neba.cafe
ngonge.com
nicesecurite.fr
www.notebird.dev
thomast.orchestra4edu.com
www.oscardelgadolegal.com
stpl.texbit.otobit.com
outra.link
pigeonaut.com
polyax.com
www.powersense.in
publisheasy.net
qsp-0-0-66.qualified.io
revelacionesdecaro.com
app.scribespace.ai
shardbook.app
app.sharpchat.ai
www.softmakeia.com
steamgiftcard.co
superjuice.shop
supernifty.fan
www.td-web.com
techvigyansolar.in
www.thesirtuinproject.com
online-training.thrivetrained.com
click.tlvbible.app
www.tourenplaner365.de
noveal.vv.toysfilms-interactive.com
tubemind.in
uenbu.com
umadelicia.com.br
static.staging.unicornboost.app
vaultactivation.com.au
vedicavinya.in
calendariocierre.vigmortgage.com
welelo.com
wyw.fashion
yeaddis.com
z3data.com.br