77/100 SECURITY SCORE

Certificate Information

Subject
CN=getluckyfind.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 22, 2025
Valid Until
February 20, 2026 56 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:7A:BB:A8:AF:09:34:AC:A9:0C:6A:15:73:1E:F8:41:D2:57:51:85:C0:A6:62:E2:6D:EE:B9:40:A5:9F:D2:82
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
grayscale-technologies.com

Other domains in certificate

adamduren.com
akhil.alakanty.com
alexandregervasipeixoto.com
allbestringtones.com
www.anthonyharm.com
www.antonioannamele.com
appliedhealthinsights.com
www.atozmarana.com
feedback.auxmentis.com
blindtest.banan4.com
bidi.bid
bolel.us
volunteer.boloperiods.com
bookmylawns.com
app.catalogomobile.com.br
admin.cerebranium.com
app.charliesbaitshop.com
chiwachine.studio
desktop.cloudmall.site
color-merge.com
consistentincomeinvestor.com
paypos.credetra.com
www.cyberapocalypse.co
patient.doctorworld.co
edgarasneverdauskas.com
app.felicity.care
test.fidisys.com
login.firialabs.com sim.firialabs.com
fuckingtrip.com
www.fuelr.tech
fusspflege-gress.de
silverhand.getgalatea.com
getluckyfind.com
pathfinding-visualizer.harshjobanputra.com
www.hawkhacks.ca
hillsstock.co.uk
hollertag.co
homeguru.chat
www.hpsalvage.com
www.iconnectcabildo.com.ar
lg-italia.invue-live.com
issypagos.com
ist-makeschool.com
jansendebont.dev
www.jblee.me
jobeagle.app
www.jonesevan.com
josehawk.com
jwjdev.com
app.lazysurfer.app
www.loqta.de
edify.macademy.in
martintoddbuilding.co.uk
www.masterarbeit-virag-nemeth.com
login.memoreminders.com
beta.memorypie.app
milchemet-mochot.com
mirdevs.com
mityquotes.com
dev.admin.muvstok.com.br
vplan.nuerk-solutions.de
planner.octopus-apps.com
link.okvendo.com
passaver.com
designer.picmote.com
kutkai.piticommerce.com
urls.precena.co.jp
beta.productengine.app
promatrixinc.com
provisionmanager.com
link.production.qvmd.com
raincouver.ca
www.readyforshabbat.com
devlink.redpocket.gg
blog.roboflow.ai
rooster-eu.com
sabiuralsk.kz
www.screensetapp.com
www.seeyour.photos
www.shenbones.com
bedrijfsafval.dispatchx.skialabs.com
hub.dev.smartcloud.smartsys.io
snowexplorers.com
spirepos.com
meet.sportip.ai
steadyprep.com
shortlink.surehub.io
applinks.timeback.io
timothyjordan.me
analytics.upcircle.ai
my.upflowy.com
www.vcah.in
www.vendamaisvolvo.com.br
vfeedmgr.com
www.backoffice.web.delivery
www.webstiks.com
constitution.y4000.xyz
www.m.youtubee.info