Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=retro.sanjaygangwar.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 27, 2025
Valid Until
February 25, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:A6:B4:3A:05:18:B4:F8:85:EA:58:52:BA:5B:17:F4:85:C1:9D:D5:7A:83:D8:D2:A6:46:1C:92:17:C0:2A:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
horizonrfid.com
878439372.xyz
www.agbstech.com
airpoker.site
www.airpoker.site
alevius.com.au
www.alezy.ru
altcover.ru
arbmarble.com
www.arjusingh.com
terminal.baraks470.com
auth.betterflyai.com
biki.site
www.bowheadhealth.com
bptboat-korea.com
brilliantstore.store
brooconnect.com
www.byuproject.com
auth.call-4-me.com
cinebite.in
clickprotege.com.br
loovi.clickprotege.com.br
www.clickprotege.com.br
mycity.sdtn.co.in
rvsystems.co.in
link.hotelga.co.kr
www.hsinv.com.sa
cerebras.corethink.ai
covetlist.app
creatorclever.tech
www.curex.solutions
cybersecurityad.com
www.cybersecurityad.com
www.daforma3d.com.br
digitalhealth.sg
www.digitalhealth.sg
dualimpacttraining.com
stage-app.eecertification.com
fly-straight.de
www.fly-straight.de
www.french-creations.com
gartenbau-gazi.de
gasloyan.ru
shop.getflowly.com
globalaligner.com
www.guitarlessonsbelfast.com
havewifiwillgno.me
www.havewifiwillgno.me
hawiya.online
heatcompass.com
hexadelta.in
heykatieco.com
portal.igbounionregensburg.com
live360.infomorph.jp
interiormotivesla.com
mindfulwave.jpsicologo.com
kansbergconsulting.dk
karakurt.shop
kartos.com.br
www.kartos.com.br
kaygisizdilakademisi.com
northernspirit.kianserver.uk
bestellen.king24-meterpizza.de
bestellen.kreuz-berliner.de
www.lakrish.in
www.lygato.com
www.metzel-kg.co.uk
osanpo.mimamoriwan.com
www.mindalgo.app
mintedreceipts.com
moelinux.com
mogswamp.com
muhammadusman.net
naloxonetraining.app
yanoopja.newways.kr
www.nimnadewpura.com
officialpercsus.com
www.officialpercsus.com
www.dev.srme.org.in
trace.dev.orijin.io
p1stache.com
paswita.id
www.proplyt.com
recept-ia.es
rentalmaroc.com
cryptcomms.rylesystems.dev
retro.sanjaygangwar.dev
login.sapalscy.pl
sdpharmasolutions.com
www.sdpharmasolutions.com
squiredigitalforge.digital
thebestturtle.com
thehawklawfirm.in
www.theroac.com
www.trackiteasy.net
urpet.club
getty-cms-test.virtualprojects.io
vladislavershov.com
yourindiaholidays.com
bytezo.zero-one-group.com
Other domains in certificate