77/100 SECURITY SCORE

Certificate Information

Subject
CN=cadastro-develop.taniafruchi.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 06, 2025
Valid Until
February 04, 2026 70 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FC:76:15:AC:F9:CA:90:90:51:46:7C:C7:71:28:1A:87:E1:E9:86:2D:2F:58:EB:6D:D9:13:8A:ED:30:76:76:52
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
hamblenresourceguide.org

Other domains in certificate

auth.1fam.app
www.1x2tipset.net
www.7comercial.com
91clubapp.shop
www.acierstout.com
links-gruppoeva.acty.com
adorcy.com
nithya.akhilmohandas.dev
alamance.co.nz
alexsegundo.com
almalafragrance.com
pulse.appsatease.com
www.aravindmetku.com
artisanallycraftedcode.com
quasar.atmta.com
pdf.backlight.ai
ar.bearx.jp
magnet.berrynovel.com
beyonddualism.com
bibirusustd.com
binarysignatures.com
bladabonnement.nl
components.bluerobot.com
boltspeedometer.com
boxing-lab.net
www.bullfrogads.com
www.burnablesnft.com
bce-pwa.bynery.com
demo.carryairs.com
castodian.nl
cddmedia.com
chenggames.com
chwarthur.com
reinvent.cloudhop.in
manoharfinancialservices.co.in
co-functions.comparaonline.com
www.creativehumans.in
www.dealerccc.com
devaranaspa.in
ibrahim.doal.dev
www.dragonmetrics.cn
e3io.com
eereena.com
staging.dashboard.esenca.app
www.firealgo.com
focoagronegociosltda.com www.focoagronegociosltda.com
golatkazan3.com
harrysandersiv.com
www.hot-crash.com
inncoder.com
duelers.jayther.com
kastleproductions.ca
signup-dev.kiwisignage.com
lapaxsys.com
tecmilenio.lernit.app
marioporceddu.com
buyback.medicalmaterials.com
meghehrms.in
metroplexcricket.club
app.misalud.ai
moorecandy.com
auth.nativepay.io
newcaruberlandia.com.br
www.opinari.ai
auth-staging.pollinator.coop
privateoffshoreregistry.com
recruitr.hu
app.reyoga.com.br
rizzai.com
www.rockhoundingblog.com
www.ruknaladwaa.com
dmshotfix.corp-internal.rxo.com
www.sacredriverboats.com
arsskyrsla2022.samorka.is
sidney-djidji.fr
wisp.simonton.app
admin.simplytrainme.com
www.skimentor.no
www.sophiastheater.at
app-beta.squarbrix.co
links.startyourimpossible-activation.com
stevemasson.co.uk
inlove.strannizza.eu
www.suwagrocery.com
cadastro-develop.taniafruchi.com.br
book-staging.tanto.app
taskful.co
theo-vidal.fr
therightclick.org
www.tigertrout.games
tomduresmith.co.uk
builder.vbtradeshow.com
www.vikasbanavara.com
www.vmaarchitects.com
washify.gr
site.bbitwin.web-shaker.org
weswitch.io
oralmicrobiome-report.yourgutmap.co.uk