Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.sounds.coffee
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 07, 2026 34 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
58:FA:1B:D0:59:FC:41:8F:95:57:B2:F5:BF:1B:EA:D5:09:42:7D:D3:41:1C:B9:16:61:6E:84:E3:BE:75:9A:1A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
fynd.app

Other domains in certificate

advent.22grounded.org
dev.almushaf.net
www.andrews.codes
www.animtz.com
antonbilonog.com
cao-voor-uitzendkrachten.appdashboard.nl
balulajka.hu
app.bemysidekick.com
breathalyzer.me
test-admin.bringly.nl
slum.broccolirecords.com
www.casasenmorelos.com.mx
clairejachymiak.fr
referral.adaremit.co.id
cloud.workito.co.il
lester.co.zw
app.crewfilter.dev
designerx.ai
admin241111.dlog.me
doodledash.app
www.elitehomessolutions.in
enigmapubltd.com
www.epic.zone
dev.app.flowby.io
game-up.app
app.grip.ng
halans.photography
dbca.hemisphere.digital sa.hemisphere.digital
hex.pub
www.highfieldvizslas.com
manage.hintcatcher.com
manyo.hiraku.space
www.hyperparticle.com
www.imagery.photography
apps.impargo.de
inspired.se
app.iventi.de
chuongtrinhthautho.kccpaintvn.com
nd51-dev.koffi.vn
monapalogo.kotaroo.work
landon.codes
en.frame.lokalebon.nl
macronti.com
maqasa.app
tracker.mathring.org
www.maybgames.com
tv.mediabrennt.com
api.memberhub.de
www.mike.fun
agents-demo.mpower.africa
multiplybing.com
assessment.iop.myanxietytreatment.com
auth.nenzy.ai
dev.openbracket.net
www.pankajmondal.com
hbreavis.qa.parkey.io
www.patrickvalle.com
paulachris.com
paztoya.com
www.pilchertherapy.com
pixarim.com
www.pixelstream.com
planarace.com
quartto.es
graph.rateballplus.com
www.sausagewallet.com
admin.sitandorder.mt
www.sjappemaker.no
crypto.sketchthat.com
www.sounds.coffee
app-delicia-dev.stailer.jp
taskeenkw.com
tbc-me.com
portal.telico.cloud
tendaigwini.com
www.thayes.dev
lesson-app.tiifa.jp
mlube.traware.com
app.trialing.org
www.uebify.io
admin.ukubear.com
gl.vm.ur-srobot.com
www.usonhb.fr
uxelena.com
veracitygl.com
admin.vishnutaxi.com
me.vitanote.jp
parlamentar.votei.app
link.weboin.com
www.webreportingstudio.com
www.welcometonewyork.de
dev-1z.wiip.co staging-2x.wiip.co
www.yannshu.com
try.yoloworld.com
www.yuki-dev.com
www.zahavacationhomes.com
merchant.zipeli.com