Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=laricode.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 30, 2025
Valid Until
March 30, 2026
75 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
20:0A:49:12:88:39:7B:F4:F1:2E:5E:CE:B1:C2:7E:42:3D:09:42:DB:63:FE:DA:FC:42:B4:15:69:38:1E:F5:13
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
hoa.do
keeper-indicator-test.11c.kr
aaron-brown.net
stg-admin.abctalkies.in
url.actionlife.com
aftersavevideo.com
aidenarun.com
airfishi.com
allnewretrosnake.com
s.ambience.ru
angg.io
www.autodilypm.cz
avazsa.com
beingseller.com
birukmengistu.com
businesssupportpartners.com
caylerandsons.tv
chamelioness.com
creatives.chartboost.com
naika.cliford.dev
dev-sysadmin.colavo-webapp.com
ecom-signodeindia.commerceq.com
vanrental-directbooking-staging.commitsmart.com
davobarrera.dev
www.domingo-app.com
www.fenerama.dev
timeline.fishtank.cloud
dev.footyrecruits.com
sapta.hourday.io
woma.immodigi.app
www.indiakitchenco.com
www.izzyfroedtert.com
jasonren.dev
security.jaspero.co
www.jessicakhope.com
joecorp.dev
kamran.co
web.kelimator.app
www.k.kharlouskaya.com
laricode.com
lawrencehall.me
legend-universe.com
www.lifencolor.com
www.listednearme.com
melihkuru.dev
agent-qa.mindyourtax.in
agent.mindyourtax.in
www.mistability.com
beta.monet.world
msexceltraining.ie
albadr.neetechs.com
alhussain.neetechs.com
tutoring.nightzookeeper.com
staging.maintenance.nival.me
nvchat.com.br
staging-admin.omnicurenow.com
opare.dev
oursevent.com
www.oursevent.com
economic-damages.painworth.com
pathquestmarketing.com
bttest.piticommerce.com
www.plusbo.at
ziga.povhe.si
premiodispatch.com
primeleadssolutions.online
project-base.project-g.co.jp
referralbooking.qderm.ca
bkds.qpos.me
qrecontracting.com
securitydemo.realtimeknowledge.com
arcap.rebus.com.co
redinmx.com
lease.ridepanda.com
referrals.staging.roboflow.com
rubsgrubsdips.com
santoshkrgovind.com
sbpackersandmover.com
www.shoprocketapp.com
dev.simsouls.com
stage.app.smokeless.world
launchpad.soundac.io
www.sriyokesh.com
sublimatbella.com
swimwithseb.com
www.synea.dev
www.techiwant.uk
toluclean.com
www.tourvana.com
tunctr.com
ufincs.com
unity-sports.com
visaappointmentalert.com
dl.vitalnotes.com
www.waitdone.com
washingtopia.com
wavlabs.org
app.yenisirketkur.com
ytcorporation.in
zealluxe.com
Other domains in certificate