77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.peaceunitylove.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 16, 2025
Valid Until
March 16, 2026 84 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:50:68:53:4B:7F:76:98:FF:E5:79:1F:6F:41:BD:3B:3A:0C:4A:7E:BE:51:8A:A8:DC:61:75:04:0F:B4:1D:31
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
farrokh-mansouri.com

Other domains in certificate

multisig.abdkconsulting.com
painel-abraofilho.aebroadcast.com.br
agricola-agricodex.com
albertogandara.com
www.allmond.dev
anzellotti.dev
ocara.app.br
arithmeti.cc
art.armenian.ca
www.artofpilgrim.xyz
www.binhduongsteel.com
boiledocean.ca
dev.bunkbread.com
carletonincraven.co.uk
www.cartuninghub.com
venue.cionstudio.com
www.clean-concept.be
auth.compraqui.app
docai.dijiti.com
ecutrek.com
www.enchird.com
www.enersystech.com
test01.esunowba.dev
www.fantasyclutch.com
www.futuresoccerplayer.com
www.game1000card.com
www.gosiak.dev
www.gurukula.com
app.hawkindynamics.com
www.hmtowingservice.com
www.hoangvultd.com
www.indu40.ch
intrajis.com
it-digitalservices.com
www.ivapp.co
jakedup.com
www.kamrancaan.com
www.kingsleyelrica.com
www.kizunadental.com
kottra.com
ladradio.com
lanthierlabs.com
lazybar-t.com
phrases.lingophant.com
maico.dev
www.martynpalmer.co.uk
www.masebtech.com
meridianyouth.com
michael-maryanoff.com
mothukuri.dev
mydailywork.com
www.nbdigi.com
neuralblue.com
nid-de-poule.fr
quickedit.noticesignage.com
www.ohadf.com
www.okdsc.com
paavaifoundation.org
www.peaceunitylove.org
popup-atl.com
propfoliomanager.com
www.rabbat.app
www.radioellemonopoli.it
remakeraiapk.site
link.rental-ninja.com
royceinitiative.com
ryanezell.com
sababa-labs.com
salarycapmadness.com
www.scalenda.com
schemetwister.com
nft.sickickmusic.com
stopnem3.com
www.stoutmotivation.com
app.syftai.com
taskgram.com
tausifashion.com
tea4u.ca
teknolojiyisanatlabulusturuyoruz.com
telegram.tax
thebluehedge.net
www.timespark.in
tobias-kraus.com
tonymolumby.com
travel-ladies.com
link.ubreakifix.com
www.uenbu.com
valenciastock.com
venperu.com
new.vidlead.com
vitsi.com
wahchaiassociationseremban.com
wayforwardgloballogistics.com
www.whatdosquirrelseat.org
whoispola.com
www.withlocals.ninja
yashinfonet.com
zinglebytes.com
administrator.zlatnicesalj.com