Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.jingjietan.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 10, 2025
Valid Until
March 10, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:D9:2E:BD:4C:FE:98:72:64:27:99:FB:B2:8C:0F:0F:59:5F:90:B3:5F:5D:1C:F1:05:E5:A2:C2:F3:6E:BA:13
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
hey-dan.com

Other domains in certificate

records.3timpexglobal.com
acmsscbe.com
feedback.advanda.app
agamemedia.us
innova.akdroptaxi.com
go.dev.amusehq.com
apextradealliance.org
www.assuranceitcorp.com
auditorwala.com
awakend.com
curriculums.azumio.com
www.beanbazaar.com
bendzsa.com
qa.caddieinsights.com
www.carlosmiceli.com
ccasner.com
cskimkaratefwapp.com
cynthiaobasuyi.com
dl.dacopa.com
days-until.xyz
dev.s.dsmap.jp
hakemus.energiasaatio.fi
evantheinfra.com
www.fairhire.me
fitsefel.info
link.footsider.app
fundingportal.fuelstreamservices.com
fugisawa.com.br
ghanaclimbing.org
app.gifty.ro
gopowerai.com
hazu.io
dashboard.homeros.com.mx
ei.inovita.com.br
tvmovie.isnottv.com
www.j-radlab.com
jatewurld.io
www.jingjietan.com
ui-staging.joinsherpa.io
www.kickadda.com
training.kvcc.edu
www.lamonacream.com
lazcanosamano.com
livingstonelibrary.xyz
staging.console.lopay.com
www.m5-portal.app
multisig-testnet.maxi.network
mealime.app
www.mistybits.com
mystay.lk www.mystay.lk
newspassport.app
ls.nhayeu.com
paintopiatx.com
www.pantherls.com
paybillto.com www.paybillto.com
pivotlabs.io
www.pixelnetwork.kr
expense.playtelecom.com
qaruno.com
www.qbost.com
quicktask.co.uk
rakeshmishra.org
delivery.ringnbring.com
link.rockapps.com.br
www.rsworldpi.com
www.scown.co.nz
seb7a.net
unity.seens.io
shader.party www.shader.party
www.shreejahospitals.in
pro.link.sikkaapp.in
www.simplyschool.app
powergym.sogafit.net
teamcarwashsamcoadmin.sqwadhq.com
www.switchconcept.fi
systemagency.com
www.tajmahalde.com
firebase-dev.taktem.com
technifyinc.com
thepostmaker.com
stage.seabid.theseabay.com
theyanai.com
www.traitte.app
traptechlabs.com
triangularitylabs.com
vitaltraining.turnosweb.app
app.voiseit.com
vtcbarcelona.com
www.weddingbear.ca
weiffert.com
flux.weld.com
app.wiready.ai
writingrenovations.com
yayago.ca
productionqc.yohometest.com
yosiassapari.com