Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=hub.luffanet.com.tw
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026 49 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:B8:E0:7D:84:52:EC:90:C9:7B:33:5A:0D:AF:4F:99:76:A0:4D:56:AA:AB:2B:86:2B:E8:92:50:5E:BB:11:A9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
hey199.com

Other domains in certificate

apps2.11challengers.com
acemedicalrehab.com
crm.agency.in
www.aionitsolutions.com
albertsfinestfood.com
alex-tsamakos.com
anhnguyenre.com
www.arceptive.com
arescodeworks.com
arservicespt.com
asianamericansforrepresentation.vote
bapindia.in
app.bilys.cc
deathnote.c0lin.ch
canadianwebsite.ca
control.chatmyorder.com
connect-dev.chekhub.com
chiesadanneale.it
www.chrisoconnell.info
christopherasfour.com
staging.cliqqshop.com
origins.thrivikram.co.in
info.technocode.com.tn
hub.luffanet.com.tw
admin-app.daikin.com.vn
hesedorf.commulino.de
crunchtimedeliveryza.com
pizza.csalex.org
record.manage.cuona.io
www.daisy.wtf
derababaharishahji.in
hub.dev-geo2.com
staging.enterprise.docma.ca
faculty.sjim.edu.in
www.empiredental.mn
www.enshure.us
entur-data-kafka-admin.entur.org
fangevshop.com
firechatbot.com
www.fiterasystems.com
flavigny-sur-ozerain.fr
floridata.com
compensation.gamingchange.com
app.ipm.geopointer.com.br
gibigroup.eu
globertz.com
gmsumpandtankcleaning.com
goaconnect.com.au
hetnieuws.app
schedule.immigreat.global
www.jazmine-miller.com
jialinjiao.com
kfkbattalion.ca
motoplaner.kurviger.de
business.labrador.ai
www.lepestou.com
www.linx-car.biz
www.mdmsolutions.co
link.development.internal.meprism.com
www.michaelkastl.com
mietmichl.at
monaccode.com
mobile.nockee.fr
myaccountcsrqa.oakvillehydro.com
www.openplastic.app
tceg.parkalot.io
www.peaceofmindexpress.com
pencilplanner.app
percentagerforynab.com
www.quelamontagne.fr
app.quotelo.fr
rayelus.com
www.rpghaven-app.com
www.speke.im
basisboard.strollhere.com
app.synchopia.com
bea.dev.syscake.it
assets.tailed.ca
www.tanyahairdressing.co.uk
auth.taxscouts.com
www.thedesignroute.in
truano.sk
www.unloc.ltd
app.upp.app
urban-classics.co.uk
www.urbanclassics.uk
vavi.hu
www.vetlabsorocaba.com.br
www.vincent-messenger.com
voicas.audio
dashboard.voveid.org
voxtivity.com
backadpacker.w3.app
www.werun.info
www.whiplashinfo.se
mobile.xtable.co order.xtable.co
zajee.biz
app.zeusdeveloppement.com