82/100 SECURITY SCORE

Certificate Information

Subject
CN=malvest.whiteroom.rocks
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 20, 2025
Valid Until
February 18, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F4:15:48:7C:F6:AE:7E:AC:EA:5B:DA:6B:3C:98:36:53:76:7E:6D:0D:94:22:1E:82:00:F9:73:B9:6E:0E:C4:54
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
heartpingr.maplerope.com

Other domains in certificate

www.anguard.ar
www.b2engenharia.com
a2ypimprov.become.social
letter.berdolfo.com
go.bird.co
shopping.bitkoala.com
back.bonhomie.fr
buddyfin.de
www.buildingwala.in
captarget-coach.fr
infopro.clau.io
cabinet.clickers-team.com
poinku-dev.edts.co.id
auratest.unip.com.bo
www.covate.com.au
www.csc-travel.com
www.dayswithout.me
decalcave.com
deccer-porto.com
digiwatchr.in
moflix.dinosaurusrex.icu
www.doctorbythebay.com
dostbrand.com
dotch.art
eventadmin.e-agricom.net
www.app-cliente.estrelaazulseguros.com.br
www.fivewires.com
forgottenfaces.de
link.galivo.com
www.gonzalorivarola.com
www.h2stdio.com
www.happysophiebooks.com
store.hcrimaging.com
heavenly-love.com
www.jadetran.dev
jamesgolding.dev
live.jura-freiburg.eu
kamada.info
www.kartawfrp.pl
www.kcnky.com
pub.keimelia.com
www.khoijagga.com
builder.kreatewebsites.com
kwisatz-haderach.com
conalepchihuahua.lapieza.io
dev.travis.webhooks.m4m.io
m7md.online
dashboard.magiqmoments.com message.magiqmoments.com
mazalove.fr
www.meridian-labs.io
mesbro-business.mesbro.in
www.mppskkr.com
www.mulberryautobody.com
www.mybroker.com.co
mysecretsanta.co.za
navid.contact
www.geda.nkenspen.de
nocobrands.ca
nshaw.dev
www.orchid11dayspa.com
www.oscaruntied.com
phasxrr.fun
dl.stg.playfun.vn
www.plcvending.net
jobs.pulongduterte.com
bspar.qitech.digital
www.quadentech.com
graphics.raiar.dev
auth.rasgle.com
www.repairjungle.com
rewardealsgenius.com
rexrothdev.com
www.roomly.ch
discordrpc.sanghun.io
admin-bstart.scoaladevalori.ro admin-staging-bstart.scoaladevalori.ro bstart-staging.scoaladevalori.ro
i.seens.io
doc.selimsql.com
admin.sellia.com.mx
cove.soupkitchen.dev
www.spezos.com
standing.uy
www.stoodfarback.com
app.syfe.com
dev.talkie.net
www.tangerinedating.com
tetrasilicon.com
thecryptomasters.com
unterhaltshelfer.com
upmystartup.com
www.upperpneus.com.br
www.uskrzydlenie.pl
auth.vmbox.com.au
uikit.webpassion.dev
wecslabs.com
malvest.whiteroom.rocks
zeptogon.com