77/100 SECURITY SCORE

Certificate Information

Subject
CN=sami4apps.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 01, 2026
Valid Until
April 01, 2026 81 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E3:7F:A7:CC:E3:93:ED:B4:66:31:CF:F7:95:4B:A6:71:19:4E:7C:F4:D8:62:61:08:EE:58:31:0C:7D:01:7C:05
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
go.primalhealth.com

Other domains in certificate

alviaje.com.ar
invite.bloo-app.com
www.brendenhitchcock.com
app.brxs.com
auth.bubbletap.com
hopeful.co.kr
www.cofinds.com
www.color-merge.com
personal.bongusto.com.bo
communityaura.com.au
app.dicehome.it
cv.digitshell.gr
www.djredmo.com
www.dreadrunners.com
x8xpdzdou.easyapp.co
www.egalanis.com
www.entregamovil.com
www.bryansk.fit-n-beauty.com
fitness-helper.com
forestaliving.com
www.gaiageos.com
connect-sandbox.goegonetwork.com
www.goldminefest.com
goodguy140.com
www.gotguidelines.com
www.greatwallandkinkao.com
app.housers.com
hundertschaft.com
events-crm-qa.hyreo.com
luckydays.ics-digital.com
editor-steamdepot.idealabkids.com
www.ideas360.cl
www.imooms.com
shop.inishare.com
api.iov42.com
isgavinfiredyet.com
peppol.istart.be
phonesync.jns.ar
app.journalclerk.com
kares.kasoft.vn
console.kisscalls.com
klb.lat www.klb.lat
evan.kroz.us
kwizcall.com
app.kybo.it
www.lankabill.lk
www.laspa2246.ca
shoothoopsnotgunsclassic.leaguesquare.com
lianhua.autos www.lianhua.autos
www.londonhotelsnow.com
lucernewater.ch
www.lulibrows.com
lwc-redux.com
manginasaldelivery.com
www.mauricioc.cc
app.mcdvalles.com
misfaltasdeconducir.com
passgen.my.id
nextmvt.com
www.nickbrennancartoonist.co.uk
nickcascella.com
harmonica.niftic.agency
app.nodeshopper.com
eligible.nourishbynara.com
design.oklol.fi
opendevotional.com
fund.greenparty.org.tw
www.petitessoeursladakhi.org
dev.app.petloop.co
piqipiq.com
practicejavascript.com
progvision.in
ptcustomprojects.com
www.raphael-vignau.dev
rdmtechcraft.com
recordreality.com
sportsdata.rino.nu
dl.roposo.com
ryanrousseau.com
www.safetacticalwi.com
sami4apps.com
sanatanvibe.com
www.segmen.dev
sheldonfarmbaskets.com
wholesale-portal.shopthrilling.com
shreeharitoursandtravels.com
simexpo22.simracing.gp
smalltalkeng.com
solratio.com
srinivasaerp.com
uruslogistics.com
dev.link.veloo.kr
www.visionnorth.co
wealthlyllp.com
vkan.ybdt.ee
www.zembexyapi.com zembexyapi.com