Open
Cached
·
just now
85/100
SECURITY SCORE
Certificate Information
Subject
CN=uk.ethical-scanner.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 25, 2025
Valid Until
January 24, 2026
66 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
99:AA:F7:F9:0B:50:54:56:44:60:AE:EF:9C:9A:E5:71:DD:D7:5F:3E:C8:C2:35:D9:1B:3F:BB:B0:8D:BD:A1:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains;
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
grivy.app
mis.kusip.ac.th
www.adirmachadoadvogados.com.br
ai-kainushi.com
www.alterdata.mx
ankitgoswami.in
market.apie.app
cms.artisse.us
atosrealiza.com.br
sl.autobiz.in
app.bantuwa.id
www.berlinovka.de
smart.biz.pl
selector.bluewhale.kr
brobinson.space
app.bussi.ee
www.checkfy.com.mx
jamal.choudhry.org
www.hcp.clipboard.health
drone-management.beyless.co.kr
www.collectionninja.com
smncharles.column.us
spaceforme.configlab.co
booking.cottagekennelsandcattery.co.uk
crader.co
flexmenus.darwinz.ai
staging.www.datafun.ca
distribud.co.uk
djlabs.cc
elink-link.ehubstar.com
prohealth.demo.emr.studio
uk.ethical-scanner.com
www.foodmood.health
www.franzhoffman.com
tick.freelivenet.com
www.greenshiftbiofuels.com
www.groupheadshots.pro
www.healthnote.lk
admin.hey-smiley.com
hodei.es
www.hotelop.in
www.imfk.tokyo
monitoreo.itonchile.com
link-yat-tung.jec-digital.com
test.jetsinav.com
cliente.jusvita.com.br
www.kemplet.com
businessclubapp.kn-app.com
kysports.top
www.kysports.top
www.leon-smith.co.uk
monbus.marcafranca.com
link.stagingapp.mdrt.org
memo.ph
www.moowstudios.com
nav.vision
www.notiontyped.com
www.oneononeviolin.com
mvp.optiplan.company
nepes.orchestra4edu.com
www.ourfaithdoon.org
compra.pago46.io
petagent.net
app.dev.quriate.com
vision.rayoapp.com
reallyreallyhappy.net
royalteenpatti.in
connect-ng-carrier-admin.rxoconnectdev.rxo.com
connect-ng-carrier-bids.rxoconnectdemo.rxo.com
connect-ng-carrier-dashboard.rxoconnectdemo.rxo.com
connect-ng-warehouse.rxoconnectdemo.rxo.com
quiz.scenty.dk
app.shipwith7th-dimension.com
app.slashsend.io
smartproducts.cloud
soga-permanentie.be
coagency.contents.sompo-de-noru.jp
gestao.soucarcalculos.com.br
stolz-coaching.de
stoq.shop
apiary.stumberger.si
kumamoto7.tabingo.com
takaakisato.com
admin.tanztan.com
admin-test.teamtelefoon.nl
url.tradein-plus.com
transparentnotes.com
app.tringpartner.com
tykari.com
link.urcle.us
amazonmusic.viasacra.band
www.vizagetec.com.br
apps.wingmine.com
app.woebothealth.com
magnus-dev.wowmaking.net
www.wrdz.app
share.yoou.com
www.zemuze.com
zendialogues.com
tritri.zenselect.jp
Other domains in certificate