Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=psof.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
13:D9:9F:D7:3C:7B:13:97:FF:36:60:A4:A0:76:27:98:05:D9:42:CF:0A:5C:62:5C:3D:F5:6B:96:5C:6A:D0:1D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
go.mo-t.com
1ludo.in
www.9buddy.com
app.albademo.com
attackspace.alfonsov.com
www.algometatech.com
eastwest.app.alpinemedia.com
www.appliotek.com
app.asistmedic.com
super.beatflyer.com
catalansdragons.deeplinks.bfansports.com
bhartes.com.br
www.buildingblocksfinancial.ca
www.caringangelseducation.com
casaencontro.com.br
charmingbeauty.eu
app.classpract.com
share.colplan.net
transport.convoy.sg
core-crate.com
pro6.corsecontrol.com
sandbox.dashboard.crowdblink.com
glow.decodedetroit.com
dehkhoda.de
www.dietwhisperer.com
q1-myaddressbook.dpdlocal.co.uk
thewallace.elizaryan.com
web-legacy.fanmio.com
lims-stage.fastcurveservices.com
father.beer
cwenerji.filokar.com
www.floursakk.com
www.foostape.com
app.fortalecerh.com
cms.gemara-health.com
gocnho.online
apps-classic.heartfulness.org
handyman.horihorii.com
hotpinkpottery.com
sbb-auth.ibep-test.com
blog.iclostudios.ml
crk.idv.tw
ifelseloop.com
imbianchinopavia.it
mail.imetalab.ca
www.investmentpropertyconsults.com
www.jiri-kolarik.cz
chatbot-dev.kaercher.com
www.komati.app
www.lakesideappfactory.com
libertytips7.com
register.loka.build
stellar.makemhz.com
mariaisabelvega.com
www.markjonesvoice.com
www.martinongyj.com
wedding.masahikokobayashi.com
measureshub.com
meethineem.com
metatechit.com
equitybank-apply-staging.money-phone.com
mrtstayr12.com
muskett.co.uk
api.mvcinteractive.com
auth.nebikiquest.com
www.niage-touchpoint.com
noahcallen.com
app.note-n-do.com
nudgd.com
painsled.com
tstmp.paktive.com
panda-coders.com
pos-api-stage.paydoo.com
www.piotrkuklo.com
www.pizzeriacapra.com
pointant-app.com
itryflutter.practicehabits.net
www.prettybrains.com
princezoho.com
psof.dev
developers.pufsecurity.com
pureple.com
quaydeliveries.com
rammoozz.com
resolvve.com
ricardopajarocoatl.com
ronaldinhoapp.com
blog.schlomo.schapiro.org
silmedstu.com
control-beta.skykit.com
www.spora.ai
www.superwatermelon.com
videoplayer.touch-less.dev
cms-dev.unaeon.com
cms.unaeon.com
vivetmarket.com
voistar.jp
www.yasminhiasche.com.ar
zakafo.com
zygohealth.com
Other domains in certificate