Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.anyareads.xyz
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026
37 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3C:7C:CA:98:05:93:D9:3A:6B:5F:6B:B3:66:AF:DA:F7:31:BC:7F:ED:8F:DE:58:26:72:97:17:9D:88:6D:3F:46
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
gquattromani.it
www.505onfifth.com
www.add000.com
www.anthonyspriggs.com
www.anyareads.xyz
nessetem.app.br
arodriguezmusic.site
www.ashmitenggconsultancy.com
www.askeijaz.com
beamtime.net
bizdisha.in
www.bizdisha.in
www.bouncehousedude.com
bucovinasrls-info.it
playground.buildwiththeta.com
bytemy.tech
www.calfoodie.com
www.capetip.com
escapepark.casabengala.app
charitytoken.bio
playgo-dev.vonder.co.th
collegepetitions.org
www.coronary.me
corporis.app
auth.countersign.com
auth.au.cynchsec.com
dailysmirk.app
www.shop.designideas.net
staging.digibooking.at
app.digiplayevent.com
distribuidoramatias.com.br
valet.ecuestre.digital
applink.fiesters.com
www.galaxycolorsindia.com
fitgraph.glovers.page
guenda.xyz
hamelin.io
www.heroicgameslauncher.com
menu.heron.dev
www.icccricketshop.com
inefsin.com
the-videogame-api.intravaiaezio.co.uk
www.ironsoftware.com
www.jane-lee.org
joelyancey.dev
jukeourbano.com
wharton-family.kali.nyc
katoltmans.com
links.laming.me
leoapex.com
www.localenlp.com
mainaksaha.in
admin-micl.mindinventory.net
micl.mindinventory.net
www.minimageste.com
www.mixidea.org
account.myensemble.com
infinity.mymoons.mx
www.ndaru.org
www.nominandum.com
links.demo.onduo.com
orphee-traductions.com
test.audits.paperstac.com
poripority.com
postd.cc
preciseag.ai
prudenthr.in
www.r0guesluck.com
www.representacionesjisa.com
revicentro.rflex.io
rishalab.in
www.rosiehitchins.co.uk
saferestart.in
app.sappay.net
get.savingshunter.com
www.scoreline.us
www.sepidehyoussefi.com
www.sergiishaulis.com
www.sevanakendram.com
www.siniestrodecoches.com
smsdripp.com
mobalpa-sfg-app.speakylink.com
worldcup.stackbuilders.net
appointment-dev.talsee.app
deverp.v2.techpre.io
erp.v2.techpre.io
www.theessentialist.us
m.una.cl
app.dev.upstager.co
electrofishing.dev.utah.gov
vendek.in
verbetajezelf.nl
vigobeatz.com
www.villagemap.net
coimbatore.vishnutaxi.com
thiruvallur.vishnutaxi.com
www.willboltzdpe.com
www.wowcapital.com.mx
mymo.yuking11.net
zamaenergy.com
Other domains in certificate