Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=vocabify.beta.dominik.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 22, 2025
Valid Until
January 20, 2026 71 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
02:10:C6:6D:AC:40:C8:05:19:5B:6F:E9:2C:5E:88:F7:DC:5D:97:95:B1:0E:17:2A:E2:A8:52:B5:3C:D8:A8:63
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
healwithamritha.com

Other domains in certificate

0000000.list.polytechniccolleges.in
www.adadao.org
www.ahdaltasis.com
alphainvest.co
database.amfmph.com
www.angularux.com
asselin.engineer
www.bela-noe.de
emercast.benstrobel.de
blocky-blast.me
www.blouscrine.com
bravarijaolimp.com
stg.cattokatsu.com
www.causewaycoaststays.com
www.cellpm.org
admin-verifyme.chris-cardone.com
claimloud.com
merenroomservice.clau.io
cmrtcmun.in
www.codebinge.com
cohentothechapel.com www.cohentothechapel.com
www.decimators.app
dentalsocialfunds.com
www.devduck.de
discaste.com
doll.network
vocabify.beta.dominik.app
drswethaskin.com
elandlord.pro
elevatedengineering.net
www.enorus.co.uk
dev.etraderex.com hp.etraderex.com
www.xyt953.eu.org
authenticator.fame-it.net
www.fmit.com.au
citrix-staging-ideacloud.forgedx.com
functionalism.org
myadblock.licensing.getadblock.com
haidarzxc.com
exp.happay.app
icaro.io
www.idi-research.com
www.jeudes7solutions.fr
www.junliangouyang.com
www.admin.k-9virtualagent.com
crm.kokos.co.nz
krav-maga-esbjerg.dk
likeligood.se
limitlessbeing.xyz
lustiie.link
marktheiii.com
mattpitts.tech
backoffice.mellevas.app
missouri2021events.org
www.muratdemirkiran.com
dldev1.nanco.io
pizza-boyz.nextorder.com
www.noodle-sushi-paradise.com.au
olga.work
olofame.com
test.onstaje.com
app.patientflow.com.au
purenfresh.penzigo.in
point.pitaco.in
pragmaticcode.io
metadata.premint.xyz
rentd.ae
rorymm.com
applesstrack.rxoconnectperf.rxo.com
scloudbot.com
smalltalk-ui.de
www.softblockrefinery.com
demo.solomonschariot.com
order.su.vision
sucolabo.com
sudokugame.in www.sudokugame.in
svoltacivica.it
takumidrive.eu
www.teethmovers.co.nz
trafficlight.theorygenerator.com
test.thewshopclub.com
www.tinkle.vip
todayapp.in
tefdev-82-webhooks.trazeapp.com
tujuhub.io
twinstation.xyz
www.undelaydashboard.com
auth.valleypos.com
varutechsolutions.com
vcards.pl
portfolio.xephas.me
xlntsports.net
xmaswork.co.uk
xpertproperties.in
yourstruefriend.com
zestak.com.au