Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.bootspruefung24.ch
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 03, 2025
Valid Until
February 01, 2026
82 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:9E:36:7E:F2:F9:DC:AB:99:46:84:4F:E5:75:2B:02:53:86:8F:AB:67:45:10:97:6B:15:08:D6:AD:A5:06:7B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
fme-admin.erp.ngo
docu.11yearsafter11.nl
2213.live
aarushdhawan.com
abtsom.com
www.adesk.link
adorasergipe.com.br
agntworks.ai
www.agntworks.ai
demo.platform.ai4b.mx
algovestiq.com
www.almostmet.in
andyreyes.me
web.gerenciadorfinanceiro.app.br
www.tony.app.br
campaign.appsensi.com
arogyaprabodhini.xyz
www.arterialjs.org
www.axisroot-holdings.biz
www.bootspruefung24.ch
calvino.world
www.cando.consulting
carlopezzotti.ch
www.cartooncoin.fun
bbmanager-tst.cbros.it
chaustudies.com
www.checkmywed.com
christianlopezcarretero.es
classaichat.com
www.ourfundi.co.ke
www.collectspot.com.br
kaganyaylaa.com.tr
researchqa.cylumn.com
deportareclub.tech
diogomonteiro.pt
ecorporate.lk
admin.edopsys.com
elecsoi.com
pages.eve-goods-store.com
experience-saudi.com
familydial.in
fleetinland.com
flickfeed.app
www.flickfeed.app
focusy.me
www.gakkhar.nl
gh-bautraeger.com
gh-immobilien.com
golfscore.ie
gurupods.com
www.gurupods.com
www.hengsiri.com
tides.hhi.town
hopeforcurablecancer.org
iacopopazzaglia.it
datbt202400096.id.vn
id2416193.id.vn
khanhit2hust.id.vn
instructhub.in
invyondata.com
cocktails.jakubforman.eu
junocare.com.mx
justaartistry.com
gooldygames.kyiv.ua
cisco.mads03.dk
pitrufquen.mappu.cl
smart.mettre.com.br
www.mjsmartapps.xyz
myr-mex.io
app-link-dev.nikugen.jp
nycountdown.live
omelenco.com
www.omelenco.com
hq.onescene.com
functions.orreco.com
panic.industries
www.pdfmavericks.com
www.petrolprices.co.za
app.pideloya.delivery
planizze.com
cockpit-next.pluscity.at
psuoy.fi
frontend.hunedoara.rambit.ro
riverhousetechnologies.com
www.rocketfluence.com
sitemap.roxanalafuente.com
scorehome.app
www.simplyfruit.gr
takeaseat.pro
techpeer.online
terramuse.io
tetasgordas.online
www.thock.net
www.tianleren.com
www.timelesshomecare.in
universmarkets.com
workabled.com
app.workstatio.vn
www.2021.podcast.changemakerz.org
rt.zoomers.xyz
Other domains in certificate