Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=hangperson.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 25, 2025
Valid Until
December 24, 2025
37 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0F:96:E0:06:93:AE:A8:8D:58:96:52:6B:1F:C1:69:81:33:11:23:17:B1:6C:1A:99:0B:1B:9C:9E:78:97:16:F9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
groupejustin.com
www.aarambh.tech
colors.acutecomponents.com
www.aiasanta.org
anupa.live
www.appcraftlabs.com
atmydesk.chat
discovery.balanceai.ca
go.beatme.org
bibliowalsh.org
bnslandscapeservices.com
bplapiloting.ru
briansterle.com
buritiapps.com
sports.calm-health.com
modernrecipebe.cateringportal.io
charlottetogether.com
www.cleanease.ca
cloq.com.br
firebase.cobaltcode.com
auth.compeatnutrition.com
conectasantaterezinha.com.br
connorbernard.dev
dev-quiz.cpn-othellonia.com
ara.cronysoftwares.com
ata.cronysoftwares.com
bats.cronysoftwares.com
fra.cronysoftwares.com
mokan.cronysoftwares.com
tta.cronysoftwares.com
cupomcabron.com
clean-tracker.cyphinvest.io
d10x-stg.co
travel-site.decursed.com
app.hamburg.devfest.de
www.dlazpoker.com
academy.drapcode.com
www.edeqa.com
www.emovia.app
estherleytush.com
console.ewhallet.com
www.eyeofthetiga.com
app.farmaciaformulario.com.br
dev.fasterci.com
link.fitstop.com
haresh.flexteam.in
links.gdagtekin.com
edupress.git.engineer
hafezhafez.com
admin.handypass.com
hangperson.com
www.hey-book.com
heyfam.chat
hmtechconsulting.com
www.hottags.in
www.humansgame.com
app.iartview.com
subscription.iasyougo.com
dougakun.ichigotake.net
kandynd.id.vn
chevxeron-advisors-stage-6.ischoolconnect.com
www.isnoaminsf.com
barrierefreiheit.jack-drillisch.de
www.joaolincho.com
jonathanlafrance.com
jplenka.in
kashsteel.com
kgautoelectronics.com
www.khoakiro.com
kwiqsol.com
mavenlandscape.com
sellerportal-uat.maxsold.com
mennin.net
moduluspi.com
myvirtkick.com
narumikyoko.com
www.nearestschools.com
neubolt.com
www.notetoselfapp.com
novalaw.legal
officinefanuli.com
docs.optidash.ai
www.pervstudio.com
image360.platform513.com
webgl.dev.pochicon.games
priceofglorygames.com
www.rabtopus.org
panel.rasutrip.com
www.rizwanmustafa.com
sastraplus.com
www.seeyamobile.com
stoicnotebook.com
maossinalizantes.sytes.net
www.totallydifferent.co.nz
be2.travelmonster.app
variantds.com
wacave.com
yossy-a.com
zakira.me
www.zlo.me
Other domains in certificate