77/100 SECURITY SCORE

Certificate Information

Subject
CN=demo.inseat.menu
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 26, 2025
Valid Until
December 25, 2025 38 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C6:04:45:DB:7C:09:04:24:1B:1F:BA:B2:5E:1D:A4:9A:95:BD:37:93:B1:8B:02:89:04:5F:61:82:37:B4:2F:A3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
fundsadmin.casttree.com

Other domains in certificate

azek-international.3dcloud.io
vwi.6d79.info
agrarianchile.cl
backpack.ahschools.org
aichatassistant.app
dev-web.alfred.cz
amrmohamed.ca
anisharon.com
www.anthonygcamacho.dev
uyd.anthonynolan.org
arkham-starter.com
www.ashishsbhavsar.in
audiobiography.com
www.beassured.io
links.bizbookly.com
login.databits.bobsled-cloud.com
www.braun.app
staging.budget-bot.com
bugraalbayrak.com
app.bumpcareers.com
www.bussi.live
www.can-can.biz
revamph.co.in
github-trendy.code2d.org
app3.coffideas.com
demo.quicke.com.pa
coronatriagehulp.nl
crewcorecs.com
sandbox.mypersonalrunningcoach.davidecampello.app
www.deepanime.ai
www.duodata.io
e-duplicate.com
fandb.app
financialtravelbuddy.com
www.franfonse.com
partner.getluup.com
accounts.getreplayvalue.com
hanathustra.com
henry-ngan.com
www.hepamet-fibrosis-score.eu
staging-tv.heytaco.com
hoewerkenhersenen.nl
www.homeworks.it
demo.inseat.menu
via-demo.ischoolconnect.com
iybibarberstudio.com
www.jkinfotech.app
www.khilesh.com
app.langduet.com
homolog.legalone-analytics.com.br
patient.levaclinic.com
bits.liquidx.net
training-92cef4d357c64664a650986b8371dbc4.logiblox.com
www.mapsfacility.com
mymau.maucatofficial.com
app.ecp.merchantportal.us
app.minimapper.app
movement-mastering.com
download.mrlondon.app
mybroker.com.co
maritozzo.nankakaku.com
nickimagines.ai
www.nicolemedvecka.com
test.app.nuvik.io
int.okpositive.org
cp5752814017970176.order.place
www.petersalomonsen.com
picpack.app
dev.pinstation.app
group.pirika.app
plannprep.ca
pvp.online
app.test.pyxo.co
rescueme.app
rgwoi.com
map.riky.app
shopkeepovertimesettlement.com
www.slyck.app
smile-art.app
stalwart.app
www.studmane.com
sugoflights.app
sylviarynell.com
stage.threshold.co
titard.click www.titard.click
www.tobeit.org
www.toyotatouch.co.za
tripski.app
gboxurca.turnosweb.app
www.venew.in
verebfamily.eu
tfw.vindishow.net
www.vitall.lv
www.warlockai.app
emails.webcat.app
whatshouldwewatch.net
presencaparceiro.xptoconsig.com.br
tt.zenselect.jp