77/100 SECURITY SCORE

Certificate Information

Subject
CN=limhenry.xyz
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:05:C4:E5:FB:B5:51:0A:D0:25:F3:B3:1C:1F:40:55:3D:B3:C2:D5:36:E4:A6:18:5B:FE:DB:BD:5E:75:51:8A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
faithsdapperdogs.com

Other domains in certificate

3beconsulting.com
diamond-freshfit-test.3dcloud.io
abarajithan.com
adrartaghazout.com
adventofagi.com
atelierpe.be
atulpatare.in
auto-fish.food
www.backpackfordrive.app
benshishko.eu
mizuholi.boat-admin.app
www.bookist.co
buoyantcapital.com
www.buyfisher.in
www.bylundbil.no
picoevents.capricode.ch
ott.chandrasekharsahu.com
maplestudy.co.in
office.milikispace.co.ke
app-dev.prendamas.com.bo
profile.gautamarjun.com.np
pdf.cracktech.org
www.d2america.com
data-dragon-analytics.com
scweb.dpdns.org
mint.e3.io
edriven.com.br
e2e-domain1.enotice.io
fencit.app
www.findingcoast.com
www.governing.ai
hebrewalphabettrainer.io
www.hispaniagroup.com
www.homies.llc
job-manager-dev.hotwax.io
www.imherechat.com
envoystaging.impreszions.biz
onfact.infinwebs.be
blog.jodieemery.info
juicystack.store
open-dev.karriereheld.team
keremoglu.net
mijn.kieswijs.nl
kxp.consulting
www.kylemjackson.com
bingo-dev.da.letsdive.io
limhenry.xyz
madelenececilia.com
fireenjin.madnesslabs.net
www.mdxltech.com
app.metalle.direct
tracking.moons.ninja
prompts.mpau.eu
www.mpliphi.com
www.mqasim.uk
munchcard.co.uk
www.mybabybio.com
reserva.navio.cl
business-staging.ngdel.com
nipplease.com
portal.okansumer.be
www.onefence.com
www.onpay1.com
assets.optakit.com
auth.ostobuddy.com
www.paper-shadow.com
www.patentforge.org
login.payil.app
remoted.app
ssipmt.researcherconnect.com
www.rethinkreading.com
reservations.rpm-autogroup.com
english-grammar.ruangmei.com
testing.app.salaryo.com
salongzodiak.se
backoffice.staging.sattha.online
www.scoringsystem.live
www.serim.xyz
sharpassist.ai
www.shoumikjamil.com
sigai.online
www.smartkidsmarket.com
www.spartanshield.in
staffing-react-staging.staffshift.com
app.tabiguide.net
www.todee.xyz
maps.tokyomixcurry.com
storage.vendpark.io
venngrid.com
site.vercellibikes.com.br
hml.vojo.com.br
www.wallfocus.in
www.webboter.com
www.whatsinyourfridge.tech
barn.wurdle.eu
www.yallz.com
acceptance.yellowq.nl
ymk-studio.com
zeevonk2025.be