Open
Cached
·
just now
87/100
SECURITY SCORE
Certificate Information
Subject
CN=dl.joinfama.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 11, 2025
Valid Until
March 11, 2026
59 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
00:F1:06:1E:85:60:5A:5C:08:5F:FF:29:9D:83:33:B8:B1:49:ED:75:0E:CC:37:25:AF:FF:FF:FA:D7:93:29:97
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
gm.portfoliolink.co.za
12rw.io
staging-sa-mforce.3diq.com
www.amzn.com.ar
www.as-alpaki.pl
atinv.hu
www.atrable.org
www.admin.bazandgo.com
bempolteknuklir.online
benjibooks.com
biljartstats.nl
wedding.born81.com
moje.bpc.pl
penyalarjup2024.bracelit.es
v2.btartisticyoga.com
staging.realpart.bwplatform.app
www.canbby.com
cancelamazonprime.com
3eprojekt-test-backoffice.cbdata.cz
ccc.directory
www.changwenhan.com
www.citydroptaxi.com
www.bnbgarage.com.tr
olivia-panel.creasoft.uk
auth.crewdle.com
api.cwsdexone.io
www.dev.cyferlinx.com
pedidos.desejomeusite.com.br
dt-installer.dev.disruptive-technologies.com
easyonlinetimer.com
testing.eatsimplified.com
platform.englishbreaker.com.br
behaviouralism.etdesign.co
expatrack.com
fairdrive.app
web.fairset.com.br
internal.fithomeappraisal.com
www.fossep.com.pe
www.futuriastudio.es
garyy.au
www.gauravgarden.com
www.grayfoydrawings.com
www.db.admin.gridedge.dev
highglamp.com
interview.hladchenko.com
smartacademy.hossamelkashef.com
www.hotlottopicksweekly.com
hptranscoders.com
app.immigo.de
innovation-flightdeck.com
itsyummtime.com
www.ivoorellana.com.ar
jei.is
dl.joinfama.com
fakture.joshefin.xyz
staging.cloudfunctions.joymo.no
kmsolucoessolar.com.br
komanoi.com
console.konttori.app
dl.kultpohod.org
ladytin.com
printr.lakrito.ee
lauradan.co.uk
www.lodzkigamejam.pl
tamagotchi.logandevelopment.io
portal.makingauthenticfriendships.com
www.mangatoken.org
marcosheredia.eu
cosmote.demo.mbks.io
app.memorycube.dk
www.menuiseriemt.fr
jitinchawla.metis.club
mid.gg
www.mystery-machine.net
dash.mzcf.org
pic-neobet.mentor.neccton.com
novoapp.ch
omise.town
www.plumesenvue.fr
pokapoka.au
vi.pthg.tw
restopl.us
www.sgasparoto.com
singinglessonspreston.com
winterhawks.sqwadhq.com
starshipinteractive.com
strongworks.hr
www.staging.switchboard.foundation
go-staging.teamtelefoon.nl
app.tobiasfrohlich.com
link.toket.io
tourvirtualacl.com
www.ultimatesoundgroup.com
devplace.vanessalanquetin.fr
www.vecstone.com
tippspiel.vyte.ch
canadaapp.wefix.co.uk
app.whatsub.co
solutions.worldlink.qa
dev.zazcredit.mx
Other domains in certificate