Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.defpotecmx.net
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 31, 2026
Valid Until
May 01, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
51:0E:F2:03:80:3F:35:B8:8B:76:8C:6A:2B:A4:A8:45:DC:07:2C:FF:1A:84:93:8F:C6:4C:65:A8:73:8F:62:BF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
gfarmlive.com

Other domains in certificate

24shop.lk
www.aasicplastic.com
i.dev.accelior.com
satura.aimcomely.com
aaaa.aisessment.com
www.albie.xyz
alstherapy.io
anagoesyee.com
admin.anandigreens.com
anantaventurescom.com
spirit.energia.app.br
client.appskoko.com
armscampdemo.com
authentication-egypt.com
bmoment.co
boyish.in
fda.console.bringoz.com
bryanofearth.com
bullion-boutique.com
caimicolombia.com
can-you-name-all-pokemon.net
www.caseymuratori.com
shelem.casinopersia.com
ccfreem.com
certibankos.com
www.chinesecalligraphyarts.com
cjhsuan.com
codeworks.com.ar
app.estudioquezada.com.ec
w.lescon.com.tr
itoen.com.vn
event.confsquare.com
www.defpotecmx.net
elsaturizm.com
emixhas.com
th.eui.app
hotelpartner.favstay.com
fenrisvrede.com
api-dev.finvari.com
qa-static.vote5.campaigns.fire-emblem-heroes.com
hoyahoya.flower-park.com
freefoodforfamilies.com
gas-igt.at
integration.getguider.co
haridusenadeera.com
virtualadmin.healthgauge.com
hilaybuskila.com
hyperrealtechnologies.com
www.iffts.com
status.incidentaware.app
sapiencia.indielevelstudio.com
iperonb2b.com
james-asuncion.com
palette-puzzle.jiho.me
johfarrell.com
joinboosters.com
kaaturu.com
app.kardespayi.org
alpha.punchlist.kaykyb.com
kgeconsulting.com
kitolabs.com
krnc.co.za
lapanan2568.com
bluniversity.lernitlms.com
luntch.com
lyrico.net
merl.ink
www.omniscient-app.com
petpicasso.ca
phoneon.cloud
pomopal.com
www.postfy.co
demo.menu.prestoexpress.co.uk
www.procanarias.com
www.pulpo.co.uk
quesodigital.com
reciclaportufuturo.com
app.resiview.com
app.returniq.co
sexydata.net
larder-to-table.shelbyshipley.dev
play.smashopoly.com
sparosdailycruises.com
albertaballetsh.sqwadhq.com
ios-support.stylix.app
www.suwavy.com
swite.dev
www.tajinderpalsingh.com
doc.signature.tecalis.com
www.texterapp.org
timeloggerapp.com
timjordanphd.com
www.traineer.app
trick.ge
snoozeemenu.triggersplus.com
trustystays.com
bossanova.storefront.demo.vida.studio
woodvalecounseling.com
wordbox.ai