Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.consuegralaw.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026
40 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AE:F9:67:8A:6A:A5:D2:D4:0D:A9:DC:F0:76:03:55:F5:8D:87:04:2A:9B:0B:13:69:55:0B:7F:7B:9D:C3:41:F4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
eyelineads.com.au
1vx.in
a-te-na.com
fpl.aeroclub.md
link.aibolit.md
www.alcalindustries.net
anuragv.me
www.anuragv.me
consumer.anyappointment.org
bellemontnyc.com
platinum.biz.ua
www.bourboom.nl
flowrecs.cfoinbox.com
www.cleverconceptmedia.com
mindin.co.in
femtocell.co.kr
www.completegolfcoach.in
www.consuegralaw.com
crtvants.com
www.crtvants.com
app.david-kozak.com
digitalconnect.blog
digitaloxygen.co.za
www.dokidoki.cafe
q2-mypreferences.dpd.co.uk
www.linux-corner.dsbalderrama.top
dynamicpaceapp.com
ecrtglobal.com
fattm.org
www.findauto.pt
www.flyers.plus
www.focusontheharvest.net
www.frycsa.com.mx
futasaji.net
geredamotors.pe
back.gesia.studio
app.goldlane.in
go.greensprout.com
hamburgerkraamtlekske.be
heektime.heek.kr
hijra.ru
howmuchbro.com
internmedicin-helsingborg.infosynk.se
admin-uat.izinga.co.za
theplantjournal.jeenapark.com
rubible.jusev.com
kasanari.kikizte.com
www.kilavuzegitimkocaeli.com
kusal.nz
kiosco.levita.app
coworking.lightkey.es
devops.limber.work
admin.lpmotel.com.mx
recepcion.lpmotel.com.mx
rewards.lpmotel.com.mx
luxurytravelbosnia.com
www.maique-schmitt.com
www.massage-christchurch.co.nz
metaldevs.com
staging.moncatakit.com
myvehicleassistant.co.nz
natalinodamato.com
gridcrew.zkgm.nexus.xyz
www.nightlifecia.com
qa.orbix360.com
www.pinnacleit.in
backoffice.yim-card.plaping-dc.com
ptogames.com
app.relevent.cl
revolucionario.org
www.ritvak.com
recipes.rohleder.family
romanstrobl.net
rthompson.dev
dev.admin.safesitecheckin.com
www.servpie.com
shiil.org
simionadvisory.com
game.simplestcode.org
www.solhyenergie.com
web.squadronhq.co
surgeflashcards.com
system-phase.com
the-eyes-of-the-wind.com
www.thecitizenscompass.com
theiajobs.com
www.tirisiway.com
www.tocaexperience.com.br
apps.tonpeiphoto.com
tux21b.org
unbalance.kr
www.unisim.mx
urbankundli.com
vibster.in
comunidad.vonixx.ar
eet-smakelijk.wesaidso.com
jackofhearts.work.gd
yappen.ing
www.spolujizda.yedem.io
yourally.in
Other domains in certificate