SSL Verification Bypassed
The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.
Reason:
Expired Certificate - the server's certificate has expired
Open
Cached
·
just now
62/100
SECURITY SCORE
Certificate Information
Subject
CN=brandonscott.ca
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
June 10, 2024
Valid Until
September 08, 2024
Expired
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1E:DF:FC:E3:3D:F5:C6:29:8C:1E:00:BF:05:7D:61:1B:09:A4:D9:F5:64:26:C6:E5:38:B4:9D:98:95:1C:E2:DD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
goodmarketing99.com
type.1337maps.com
iletisim.acibadem.com
www.allianceautorepairs.com
soporte.alosuite.com
analytika.ai
androappsolutions.com
amfam-cfr-stage.askkodiak.com
ccmselfserve.atco.com
awawawawa.org
www.awawawawa.org
www.b-52.be
www.basementstudio.co.uk
becleverly.app
worklogs.bigfox.cz
bloodbond.me
privacy.boroughmedical.org
www.braintain.app
brandonscott.ca
www.brianmicklethwaitarchive.org
www.bringandring.de
cashflow.camino.solutions
cavemanstudios.design
www.cesarlucio.es
www.charomx.com
clashplatform.com
www.cloodin.com
thezium.co.kr
share.staging.zoza.co.tz
share.zoza.co.tz
asher-chan.codebrew.blog
www.datopia.dating
diaquiz-admin.diadraw.com
diaquiz.diadraw.com
sib5.dicoding.com
hardware.easternhimalayas.in
playerjs-next.easysignage.com
console.edigenerator.com
emmanuelaina.dev
enl.kr
clickerheroes.games235.com
ginrummyplus.games235.com
pet.games235.com
insights.gatedcontent.com
prepaid-card.globalgarner.com
quo.gocad.de
www.guillaumecauvain.com
app.hellorhea.com
pgim-staging.hyper-os.com
anniversaries.innowarmth.com
app.dev.instaplug.app
ewallet.insurfun.com
1-test-analyzer.internal-fun-chegonibudj.com
calendar.itv-america.com
janitorial.cloud
javierarocena.com
klay.me
www.kovyla.pub
skillcompassbysolutions.lapzo.io
www.learnmaps.com
portfolio.lucinetwork.com
tickets.mbmint.com
audleychippy.megapos.shop
www.merealfaz.com
www.mikaelmork.com
mmi.jp
evaluate.manufacturing.bayer.mobilitymojo.com
comuneros.montesmarcon.com
mymovely.be
quote.mypronto.io
nouralshamsalon.online
novamaintenanceservices.com
spiele.obrhubr.org
admin.offingo.com
management.offingo.com
u-space-demo.orbitalize.com
u-space.orbitalize.com
hugot-optimizer-dev2.pbcd.net
www.pizzeriadomino.se
develop.prooffactor.com
www.quickliy.com
viral.reklamaction.com
admin.reserver.in
rinoguchi.net
www.safeservicechile.cl
admin.saludjusticia.com
verify.savelit.com
backend.sbftv.com
app.scnrevolution.com
www.simplylink.com
snakegame.com.br
www.softopsoftware.com
docs.swidoc.ch
tanara.tv
www.the-bubble.net
tldrworldnews.com
www.trupollz.com
studyinusa.vilnek.in
www.zigii.uk
biz.zimlala.com
Other domains in certificate