Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=console.kurobi.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 16, 2026
Valid Until
April 16, 2026 87 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B0:1F:FC:EC:9A:31:A0:86:54:20:0B:FA:BF:CC:56:2F:90:19:3A:90:3A:E1:9E:E9:61:8C:0D:30:41:DB:F7:56
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
genrephile.com

Other domains in certificate

3xetps.com
dev.accountablelabs.com
adverb.dev
www.aeromexico.app
appicksolutions.com
www.associatedlabelprinting.com
awaelalnoor.com
bkstudios.it
www.bloozy.app
blunyoic.com
missioncontrol.bookcreator.com
brandeets.com
bultip.com
polecam.ceneo.pl
www.chats-club.com
dev.clonck.com
ordena.olivegarden.com.pa
www.conciergepro.co
app.conexaoimobiliariacpv.com.br
deepfried.fish
enigma.dheshal.com
www.do-wot.com
spell.qa.doodlelearning.com
www.dwellist.ie
menu.edim.app
preview-www.uc-bcf.edu.ph
edufoodhack.eu
englishaccentsmap.com
enwat.it
admin.everbloom.app
apply.ezqualify.us
www.facultate.online
hackathons.femaletechleaders.org
feplus.com.au
fictive.cc
frammes.co
explorer.fundtheplanet.net
gamer-zylo.com
getflowly.com
partner.glambox.com.br
www.goldenheartsfoundations.org
camden-audiology-clinic.booking.hearlink.co.uk
heyhazel.ai
hosb.in
hotelcasamodelia.com
portal.hviletid.app
toddgym2.impactwrap.com
hn.janssen.lc
link.jimmyjohns.com
www.projects.joshid.co.uk
www.josiahapp.com
www.justpizza.gr
drawing.for.kid-apps.com
kirans.net
console.kurobi.app
admin.ltcpowersolutions.com
eleevateoverseas-ug.metis.club
account.migolink.com secure-dev.migolink.com
moneysplit.app
rechnungsportal.muessig.app
opensource-dev.myvaillant.com
brest.nabimoon.com
nature-vie-coteaux.org
sistema.neovalidador.com
neptunestech.com
www.nichipro-award.com
nikitarus.com
previous.nilear.com
www.nvkcs.com
auth.okuma.tw
oxmountainadventurecamp.ie
web.parindey.app
www.pensioenbijhenryschein.nl
perlhortasafor.org
www.picksmart.app
pocketscm.com
decameron.ramaz.org
app.redrive.red
static.revivalapps.com
www.cabsi-driver.robertolegorreta.com
shadnet.in
shanghai-hoenigsberg.at
memogram.t-akari.net
tailoredmediaplus.net
tarjoo.com
welcome.taxefy.at
theadamspages.com
dashboard.thecodingstudio.in
www.tostaduriacorcolen.cl
turtleflipstudio.com
txm.com.ar
www.uiux.de
voyadoc.com
www.waiandshan.com
test.waltr.in
wana-bros.com
app.weneed.ch
webpricing.xivis.com