Open
Cached
·
just now
85/100
SECURITY SCORE
Certificate Information
Subject
CN=lacocinadeisa.corntech.com.mx
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 08, 2025
Valid Until
March 08, 2026
61 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C6:9B:9F:2A:B4:AE:0A:8A:7B:7A:9A:D7:D1:87:C9:D1:78:01:6B:9E:4F:B9:B6:A9:25:E6:C7:67:70:07:16:FA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=7889238
Content-Security-Policy
Weak
block-all-mixed-content; frame-ancestors; upgrade-insecure-requests
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Significantly strengthen CSP directives
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
gorilla-sports.ch
abhayupadhyay.com
pwa.stt-gdc.acuizen.com
www.afavoritaesfiharia.com.br
app.affnty.cc
mezarlik.agriyaklasimrehberi.com
ahmedazouz.com
akhanda.org
www.aletintaseforros.com.br
anddevw.com
antoinerateau.com
beautyboards.co.uk
www.befit4you.es
blockstobytes-jp.com
bola8poolclub.com
link.brindapp.it
coach.buildai.tools
deposit.buja101.com
www.joose.com.pl
wallet.demov3.contentfabric.io
lacocinadeisa.corntech.com.mx
app.corvusdrones.com
admin-hom.creditoperola.digital
login.q.croquet.io
dev.dashpool.fr
drmusaed.center
ua.dspsolves.in
dtspl.in
www.dtspl.in
app.eaiinvestments.com
emhome.com
fieldstoneva.com
www.flytinary.co.uk
focusin360.com
www.focusin360.com
fondazionebruschi.it
fragment.codes
go.fussball-nachrichten.de
geradorinvoice.com.br
getstudysolution.com
www.gipszbetonlepcso.com
gummibarchen.com
www.haikoo.io
www.harinwu.com
harkawal.com
howmuchtoeat.ru
convancesettlement.ilymgroup.com
v3-tbcnanuet.impactwrap.com
api-airline.itxi.aero
www.jerrythomas.name
applink.jetseed.com
kidscampustirupati.com
kostritzer.work
lamvu.dev
loud-technology.com
www.madchasselures.ca
activities.mathema.cloud
web-staging.me2you.com
meaningmakers.io
budupilimaya.methsaviya.org
nuxt.mitenchauhan.com
dev.mkmlife.co.za
mktronics.de
admin.mobilereality.app
mocyno.com
myats.me
myeasydev.fr
www.nocka.co
obsahemdosrdce.cz
olds.co
demo.persequi.ai
www.pixdodia.com
pixomori.com
prayertimings.org
prepai.xyz
qa-galp.prompt-pitang.com
pskolka.de
linkdev.railboard.com
rapstudy.com
www.referberry.com
robynmackenzie.com
sandlabs.xyz
illustfolio-lumina.sanographix.net
sbuettner.de
scown.co.nz
www.shokkandawe.co.uk
stg.tanzraeume.com
www.thara.jp
tinycharge.xyz
usfsoccercamps.com
vaultthis.com
vitxgo.com
clinicas.vivadoctor.com.br
voxelletech.com
walkwiz.me
weavegames.tv
app.webjeda.com
y-dash.net
open.appandgo.yodelit.co
www.yuting.cc
Other domains in certificate