Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sports.moraspirit.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 29, 2026
Valid Until
August 27, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C1:FA:9E:51:D6:40:A0:AF:09:BC:DC:E0:33:E2:69:C4:25:57:7D:1F:EB:29:0F:44:33:DB:26:2A:4A:3E:77:B6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
garaj9.com
app.4tars.com
system.a1groupservices.com.au
www.akut-medizin.de
andii.jp
gruporodriguez.appshare.com.br
armacard.ru
noah.arndt-serafim.de
bacbrenewables.com
www.bahaitt.org
gift.bnbd.co.kr
promokod.bodyfix.io
partner.bokudeli.jp
boomedias.com
antelope.cevs.dev
www.choicewizardry.com
urp.comunesg.it
pdv.crmfacil.digital
links.decision.health
campus.docalculate.in
hub.dwellverse.io
login.edigitalindiaservice.in
epub-speedread.com
app.esotar.com.br
blog.ewuraba.co
admin.fhsis.org
ja.english.finitefield.org
fleetfixer.io
devfest.gdgstrasbourg.fr
giveme5.ai
dev.hpm.healables.ai
www.hehim.ca
cast.hellodoctor.com.mx
hungryjacks.hemisphere.digital
historyofspaske.com.ua
internjobs.uk
crab.iot.in.th
www.jaxtin.me
em-csd.jnpa.in
knoso.ai
kredio.se
kskoro.be
www.laterunner.dk
www.log-point.jp
staging.lumineet.com
sleepystories.markusschuermann.de
link.app.mdrt.org
www.mdtsindia.com
freshadmin.mesensei.com
michaeligade.com
www.momentum-events.co.za
blog.moons.pe
sports.moraspirit.com
www.munsonplumbing.com
dev.portfolio.mvtech.dev
elf.nargil.net
www.nelka.jp
www.nexworx.com
evaluer.occasionbeaucage.com
offenerechnungen.ch
app.okonomiyaki-honpo.jp
3p.oktostage.com
toponespa.orch-btech.com
foto.ottomanelliandrea.it
ourhomebaekban.store
perioduniform.com
www.perioduniform.com
praediaproperties.co.za
p.qlean.ru
qr-serv.fr
www.radhakrishnan.in
auth.tradex.rainbytes.com
dev.i.rallyreader.com
stage.app.rallyreader.com
d.remedo.io
apps.robots.coffee
dairy.sambalatech.com.np
demo.members.sargon.com
shipxcargo.in
www.smartdream.es
solar-nachrichten.com
walkershuffle.sqwadhq.com
resume.stdhub.site
www.tapacenterdev.com
taxiburrito.com
techconative.com
www.thecambridgeagency.com
thecarsite.com
toeknee.dev
topmanagement.space
www.ulearnabroad.com
www.vbend.co.za
kampf-beta.vjorngard.de
cadeau.voormerle.nl
api.waveride.co
wehnaumgatedcommunity.com
whodidit.co.za
culaodung.ebot.xbot.com.vn
20i.zabaat.com
app.zuvy.co
Other domains in certificate