Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=staging.objectiveguitar.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 29, 2025
Valid Until
March 29, 2026 70 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
10:28:2D:BB:1A:A8:39:6A:5F:A7:C8:F4:55:94:E5:6D:52:6E:CB:7F:E9:73:28:3E:48:FE:9E:6B:DE:4E:9D:8C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
falounge.jp

Other domains in certificate

8quad.net
www.agilesustainability.org
www.amrshams.com
app.any-mal.com
apputils.fun
aquaharmony-fiberglass.com
badreddineabba.com
bastionshq.com
www.bengalnewshunt.in
berkayturanci.com
bezyay.com www.bezyay.com
bitbungalow.com
canary.admin.bluechew.com
app.boomteam.ai
burnedstar.com
www.carolinebanville.ca
app.dev.chekhealth.ca
chriscanin.com
civilsa.net
srrvidyalaya-manage.classet.in
app.classifly.io
cloudgantry.com
admin.studygram.co.in aistudios.co.in
d-kode.com.lk
elitaydinprefabrik.com.tr www.elitaydinprefabrik.com.tr
www.coxbusiness.online
www.crickfield.com
danielhart.ca
link.digitalinnovation.one
webrtc.drachtio.org
driverserviceagencypatra.in
edify.me
www.erevertechservices.com
fast-convert.org
gamewinners.app
blindtest.gcbx.fr
gensocial.app
staging.graviztelescope.com
www.horasync.app
ifilas.com.br
docs.ihospita.com
jetstack.ai
studict.demo.key-link.jp
totem.knobs.it
kudos.kudosone.com
liangbuyan.autos www.liangbuyan.autos
masjidumar.us
www.mbxr.io
app-staging.medzy.ca
miong.es
apps.mubasher.info
myfirsttripto.com
www.noopurkashyap.com
www.norbyte.dk
nudgedesk.co.uk
staging.objectiveguitar.com
pantufla.net
melazycie.pawelbilski.pl
pcbplay.com
drivenscan.pdr.cloud
pickaxe.media
nova.portfolioview.co.za
project-unknown.jp
brigadereaumur.order.pulp.eu
www.qualityconsilium.ca
rbhealthcareservices.com
share.realize.design
www.reposebyob.com
pitch.rive.app
www.rtnews.site
sellar.in
shabil.xyz
shopped.co.nz
swingset.sorav.it
www.suhailcr.com
sunbelthomeoffers.net www.sunbelthomeoffers.net
product.supertone.ai
tasquet.app
thedirectsellingacademy.com
www.thoulessart.ca
threatviper.com
www.throne-recruiting.com
tkcashflow.online
trendmobileapp.com
backoffice.uapplyabroad.com
varjendisse.ee
versaclinic.app
webassets.villagemaps.in
vocapino.com
web3arch.io
wonderwallindia.com
www.worldappdew.online
worldmindcare.com
telegram.yline.app