Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=vocabify.beta.dominik.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 22, 2025
Valid Until
January 20, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
02:10:C6:6D:AC:40:C8:05:19:5B:6F:E9:2C:5E:88:F7:DC:5D:97:95:B1:0E:17:2A:E2:A8:52:B5:3C:D8:A8:63
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
healwithamritha.com
0000000.list.polytechniccolleges.in
www.adadao.org
www.ahdaltasis.com
alphainvest.co
database.amfmph.com
www.angularux.com
asselin.engineer
www.bela-noe.de
emercast.benstrobel.de
blocky-blast.me
www.blouscrine.com
bravarijaolimp.com
stg.cattokatsu.com
www.causewaycoaststays.com
www.cellpm.org
admin-verifyme.chris-cardone.com
claimloud.com
merenroomservice.clau.io
cmrtcmun.in
www.codebinge.com
cohentothechapel.com
www.cohentothechapel.com
www.decimators.app
dentalsocialfunds.com
www.devduck.de
discaste.com
doll.network
vocabify.beta.dominik.app
drswethaskin.com
elandlord.pro
elevatedengineering.net
www.enorus.co.uk
dev.etraderex.com
hp.etraderex.com
www.xyt953.eu.org
authenticator.fame-it.net
www.fmit.com.au
citrix-staging-ideacloud.forgedx.com
functionalism.org
myadblock.licensing.getadblock.com
haidarzxc.com
exp.happay.app
icaro.io
www.idi-research.com
www.jeudes7solutions.fr
www.junliangouyang.com
www.admin.k-9virtualagent.com
crm.kokos.co.nz
krav-maga-esbjerg.dk
likeligood.se
limitlessbeing.xyz
lustiie.link
marktheiii.com
mattpitts.tech
backoffice.mellevas.app
missouri2021events.org
www.muratdemirkiran.com
dldev1.nanco.io
pizza-boyz.nextorder.com
www.noodle-sushi-paradise.com.au
olga.work
olofame.com
test.onstaje.com
app.patientflow.com.au
purenfresh.penzigo.in
point.pitaco.in
pragmaticcode.io
metadata.premint.xyz
rentd.ae
rorymm.com
applesstrack.rxoconnectperf.rxo.com
scloudbot.com
smalltalk-ui.de
www.softblockrefinery.com
demo.solomonschariot.com
order.su.vision
sucolabo.com
sudokugame.in
www.sudokugame.in
svoltacivica.it
takumidrive.eu
www.teethmovers.co.nz
trafficlight.theorygenerator.com
test.thewshopclub.com
www.tinkle.vip
todayapp.in
tefdev-82-webhooks.trazeapp.com
tujuhub.io
twinstation.xyz
www.undelaydashboard.com
auth.valleypos.com
varutechsolutions.com
vcards.pl
portfolio.xephas.me
xlntsports.net
xmaswork.co.uk
xpertproperties.in
yourstruefriend.com
zestak.com.au
Other domains in certificate