77/100 SECURITY SCORE

Certificate Information

Subject
CN=auth.privatenet.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 17, 2025
Valid Until
February 16, 2026 76 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:9E:3E:C5:81:CB:6A:2C:78:2A:2E:2A:5A:05:CB:22:9A:B8:37:8E:1C:B4:20:AA:B7:82:9C:DD:EA:27:1E:49
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
gmanual.mimamori-info.com

Other domains in certificate

www.aadven.com
www.abdlim.cloud
www.ai-jobb.no
link.dev.highend.aiphone-app.net
dev.internal.apxor.com
battlecity.avinashv.dev
www.baegent.app
account-dev.barbr.club
flipbook.bethictech.com
buildtrix.in
auth.cabanalabs.com
cafedonsantiago.com.co
www.callahanvideos.com
cannote.candraaji.com
www.carmeloventimiglia.dev
dev.api.carmunity.io
www.cemalsezer.com
cheermanager.de
www.child-participation.kr
www.code3x.tech
tex.thsrc.com.tw
www.creatorsofthemoon.com
www.danboudet.com
dangcuuson.com
connect.dashride.com
bee.dataggo.com
beta.deckdeckgo.com
cloud.deepcell.com
www.devdubois.com.br
www.domogame.com
xwu0wb55jhvkfef7.easyapp.co
www.elf.world
dev-ecp.eruptr.com
www.essenceofmath.kr
farshet.com
projectlocust.fitalyst.com
flexoptimum.com
rsa-app.frt.vn
mijn.fruhstuk.nl
gapcrossstaging.com
www.gotoodle.com
wqvi.gov.vg
guilhermebarbosa.dev
hackerbayventures.com
halacv.com
www.hkelektro.cz
www.humancapitalcredit.org
imaginexlearn.com
finance.jasir.dev
auth.neuron.keurig.com
kevinpelgrims.com
zebrabox-ch.keynexis.com
5wep-dev.koirss.ca
lazyastronaut.space
legalit.lt
lellolink.com
luffanet.com
dev.customer.lunchnow.com
madlab.mx
mazencoder.com
deluxesteustache.megataxi.com
memorialsvc.com
micumple.info
midatlantichomesolution.com www.midatlantichomesolution.com
mikeengforsenate2018.com
minotamusic.com
www.mohalkos.com
app.nestpayroll.com
www.ocloudsolutions.net
www.oficom.com.ar
auth.okayinside.com
www.pooltime.com
courier.postaquick.com
www.poweredskin.com
auth.privatenet.app
researchalienbodies.com
app.riffstash.com
adx.roketin.xyz
www.rosenbauers.com
skorkardapp.com
safe.staxy.live
www.stefhock.nl
www.stevendangma.com
www.stoisk-ro.dk
swahealthmd.com
old.demo.tagntrac.io
tam7t.com
www.thebornsoft.com
trendydashboard.com
dynamiclinksreadingcorner.tv2zprod.com
uuwa.net
puma-staging.vizury.com
www.vsmobiles.shop
www.warpprism.com
unknown.whatsscore.com
www.workscaler.com
www.xccessor.com
links.xtribute.io