Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=backhandstitch.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 28, 2025
Valid Until
December 27, 2025 51 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
78:4C:25:3C:08:CE:58:6F:83:36:1D:4A:70:E5:7D:CA:A3:C8:C6:98:FE:4C:70:02:2E:11:17:46:E6:06:52:9B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
feed-car.com

Other domains in certificate

www.aboflygplats.fi
tour.agent.aeroglobe.pk
aifirstpm.com
airoguelite.net
alef-bet.net
stage-admin.alfred.fo
instaboard.asurada.dev
avaaicapital.com
backhandstitch.com
www.diamondhunt.baseball-connections.com
beesonbitcoin.com
besteffortsify.com
bharathiassociates.com
bigblockpepes.org
bluepeakdevelopment.com
brimdata.io
vs-admin.caazam.com
calisthenics.co.uk
canvouch.com
cardioforhealth.com
cdsmartlinklab.com
christyedlinmakeup.com
cliveboulton.com
www.build.cointanda.com
www.y-go.com.pa
app.hamibook.com.tw
councilofandrews.com
devity.in
devpatch.com
displaygram.com
dev.edodsgarage.com
admin.eeaser.com
www.enpolicial.es
www.ercharts.com
www.estilingue.co
exceltiainternational.com
v1.famguru.app
flavorsofmagic.com
footprynt.io
galaxy.md
www.garrettrestoration.com
ppn.gethuan.com
githelm.com
community.glissandoo.com
www.herrakbulut.de
industriasmexicanas.com
demo.iotdataroom.com
www.jalowell.com
www.jfortunatojr.com
jossgitlin.com
kb-health.com
redige.lapieza.io
learn-en.co
manage.likestoryeg.com
llgamers.com
inspection.ltl-xpo.com
ports.mana-surf.com
www.materialize.tech
www.mbelelebohang.com
rickroll.mcgu.dev
merdoth.com
micropasso.com.br
www.neoticasolutions.com
www.nettle.sk
noahsknifesharpening.com
unisol.nortwest.com.br
pjsc-severstal.ru
es.stage.owner.pocketpost.life
userstaging.point4more.com
v2-demo.profeed.online
www.qrbox.com.br
www.revenue-advance.co.uk
www.revolutionary.software
romainmiorcec.com
farmaciasdoctorsimi.satelite.ai
shode.dev
metered-dev.snapmentor.no
app.snappyscrums.com
test1.srgks.com
structconprojekts.com
successlinknetwork.cc
dev-anaresearch.supcolo.jp
taraswalgren.com
f.techdigitalcard.com
techpro-eg.net
thai.run
thecrescent.bar
castorama.tmobility.app
test.tnmt.cc
toowit.com
macawemenu.triggersplus.com
tss-pj.com
status.webcat.app
www.whodeenie.com
wisebit64.com
admin.workbriefly.com
web.wrench.ai
sales-dashboard.wunderdog.fi
next.xpdbx.co