Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=qrcafe.ps
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 31, 2025
Valid Until
March 31, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0E:41:D1:1F:8C:84:7C:8E:D5:28:12:EA:8E:57:96:26:71:F9:B6:2B:3B:10:19:B1:3D:94:16:F1:C7:2A:EB:71
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
fundzzz.com
www.adiop.com
ssen.uat.advanced-infrastructure.co.uk
attendance.anchorblock.ai
mta-sts.ancpl.com
www.artxchemistry.com
www.asuwics.org
bigstagetournaments.com
app.bigvu.tv
buildgulf.com
keila.bypal.net
www.capitalloom.in
app.cat4school.de
auth.charactercreatorai.com
adorable.co.il
fleet360.co.il
www.codegazer.com
color-ado.store
worldptg.com.hk
erp-demo.derianmarchan.com
ebea.info
trackingapp-nihl.esports.cz
eviloatmeal.se
www.find-words.com
flamingo-cards.com
admin.fluenn.com
frolichq.com
sdklog-test.geniee.co.jp
gullakpathsala.com
admin.hannhwafabrics.com
www.haranlakha.com
heerandhues.com
kiraku-aneyakoji.b.hotekan.com
www.icvivah.com
www.impawsibleimpressions.com
tweet.inayathalam.in
invit4.com
iotdataroom.com
kinerja.izzatulislam.org
www.joecode.io
john-greenwood.com
joinchargingahead.com
www.jortwiersma.nl
finance.jpgsolution.com
overtime.jpgsolution.com
mc.jpos.jp
www.kurulu.lk
www.lannaproducts.com
lccinternational.org
app.lesnouveauxpotagers.com
wos-prod.da.letsdive.io
beta.livelipath.com
maison-du-style.com
matthewchatham.com
mavithahomes.lk
www.medparrot.com
link.meetrelate.com
mintmyguitar.rocks
mybible.live
mypaldrop.com
nadejepromarpanka.eu
nanaopoku.com
scheduling.nextinline.io
applink.oceans-nadia.com
odesignsite.com
oraziopetito.com
pairmx.com
www.palmexus.com
papiruso.com
passtheparcel.app
patchpark.net
www.peter-ying.com
tools.pipelinersusa.com
www.plenipet.com
fifty-years-amata.praneat.com
www.primovisionmedia.com
problemsolversoftwarellc.com
www.pwaivers.com
qrcafe.ps
rp.realworld-one.com
static.revel.cloud
rolefit.com.br
maintenance.safetyinminutes.ca
leviathan.sanjaygangwar.dev
www.shopq.co.za
stocktake.skegdev.com
help.speisekammer.app
team-dist.svolme.net
bodahernandezrodriguez.swanmoments.net
synthpresetsplus.com
terralma.mx
thesundewmall.com
thumbzgreen.com
www.timorway.com
turina-and-co.com
www.updexbr.com
servicios-test.veridico.cl
virtual-akihabara-web.com
widadiapro.com
zootha.com
Other domains in certificate