Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=mybrief.cv
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 30, 2025
Valid Until
March 30, 2026
74 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C4:FC:88:08:FE:77:BC:6F:CE:FC:A2:00:B4:FA:F5:3C:8E:44:53:05:61:C3:D6:33:78:9A:CB:95:45:10:88:65
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
gatherbooth.com
www.abcantrodocovolley.club
i.snarveier.advokat-t.no
agenzietorinesi.it
andydarr.dev
www.ardyghoorchian.com
ororoute.co.kr
dev.admin.cozymakers.app
anthony.dang.co.nz
www.degima.ai
dmonteair.com
www.dmonteair.com
domycab.com
eiraofficial.store
gallery.evenero.com
fabianofnunes.com.br
fiskerocean.site
manuals.gcbx.fr
vote4.goodylabs.com
www.goscout.info
green-hollow.com
haleybarlar.com
app.ideate.nu
in-between.live
nida-pajar.itsyourdayofficial.com
millionwordschallenge.kodair.us
krystalshard.com
www.kyogikumite.com
cdn2.lawdroid.de
www.libertytips8.com
winecellar.ljdevelopment.cz
demo.loopregistry.com
matiushev.me
www.mohadtechlabs.com
mohithiragaspipelines.in
bluedash.mstech.com.br
gcp.mtnpy.id
mvpapp.org
mybrief.cv
restaurant-photo.necklax.com
www.nickydollars.com
www.nionaai.com
sheets.nowdraft.com
csi.numa.com
voice.numa.com
pre.monitorizacion.osakidetza.eus
pandemiadobem.org
test1.patagonia-soft.com.ar
games.pierreschutz.com
go.pingbring.com
www.planreach.com
previsy.com
protektron.com
www.qualitylogin.com
questmaker.net
rajsava.org
reablock.com
www.renovaworld.com
www.rhinooffice.com.au
rikhnikhal.com
chatbot.ruta4.mx
saltycareers.com
sashimirestaurante.com.br
www.sdexpertrepair.com
securusrecordingsettlement.com
shapeshiftvr.com
skogbuilds.com
soccerslimelive.com
sportscampsatstonybrook.com
sportspickssystem.com
functions-api.springboardvr.com
stackports.com
starhulks.com
sudoku.academy
www.sunflowersamurai.es
sweeposaurus.com
support.syukyoma.com
www.tabulate.me
tarkovforge.com
teenbizapp.com
templyfy.com
thehappyhomes.in
thetrenter.com
thinkboard.io
tramporleans.com
api.tuftsdining.com
vedantaessence.org
www.vedantaessence.org
editor.vennapps.com
www.vexzo.in
alpha.viberate.tech
www.vincentli.dev
vlthevulture.com
wantedburgers.com
palm-reader.wearetribus.com
webcanva.com
d.wimc.me
witideal.com
xtns.dev
app.yctw.dev
Other domains in certificate