Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=fareskate.it
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026
41 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4B:35:BC:B0:63:B9:1C:3B:60:7F:D4:07:41:CB:60:50:F0:58:DF:48:81:E6:AA:47:CA:B5:3D:BE:EA:69:2B:72
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
grace.app
academicheroes.co.za
home-management.amaurychalot.dev
www.apostoladodelapreciosisimasangre.com.ar
appiota.co.uk
www.atirenovationjeancortes.fr
bahamjun.com
www.bijaypaudel.ca
bilen.mobi
black-hat-studios.com
gex-sit.bricomart.es
bubblyboba.ae
caerulusvision.com
centralindustrieskandy.com
www.codefix.be
www.convene.co
applinks.convious.com
www.coreandcoiltransformers.com
www.dineroo.com.au
www.dqs-safety.co.za
www.elementalsymmetry.com
eyraai.com
famomakers.com
fareskate.it
fclostigres.be
stratagem.finculus.eu
dev.fitforce2.com
florian-paris.ch
snake.games235.com
ubg98oct.games235.com
disjin.gather.sh
www.ghosttoolset.com
utilities.grouplinkone.com
www.hasirele.com
hatchpot.com
www.headkanon.com
link-pm.app-api.huttonsgroup.com
ibguides.com
internal.insiderpie.de
www.jaintechacademy.com
www.jungleart.co.za
atschoolmobiledemo.kbcinc.cloud
www.v1.keeganwoodburn.com
grace.kunath.co.nz
smatrix.lavoroagile.it
leoche.org
www.linfieldstables.net
linkeeper.io
www.litemojo.com
localrun.live
lunchbestellen.nl
edge.auth.mondoo.com
designsystem.moonlightmobile.dev
mr2022.com
tip-calculator.nguyene.com
nizzykicks.ca
www.notetaker.info
fontspark.app.openform.dev
admin.nurse.org.il
docs.override.com.mx
www.parxeapps.com
www.pesacrash.com
photobug.app
link.playtoome.com
www.pltrackr.com
admin.potalathanka.com
www.procyongames.com
support.quike.app
www.rayunrenovation.com
schoolofertugrul.com
sfors.trade
project-dev.shenandoahcabinetry.com
sidegurus.com
skratsj.com
slpyf.com
agent.smartdigiseva.com
soundsscape.com
app.speedzexpresscourier.com
admin.spiffyventures.com
linktest.squadle.com
srs-admin.statueofequality.org
app.stcglobal.vn
beta.storyspot.se
www.suez.dev
give.suitefeedback.com
alert2040.systemunknown.com
ae.talisman.dev
www.tecalis.com
www.thegoldenbay.com
thucphan.com
www.tinygiganticgames.com
blog1.tonywhomever.dev
magixpool.touchmagix.com
magixpooladmin.touchmagix.com
blog.tunebrains.com
uclodia.com
veloxware.com
vmaonlineevents.com
was-ist-ai.de
hoomanns.yugank.dev
Other domains in certificate