Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=locator.fastsigns.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 23, 2025
Valid Until
March 23, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:35:43:45:47:C6:0C:D1:AE:EE:C2:94:7B:4C:CC:6E:65:F1:1C:EC:AF:8D:25:51:11:DE:27:CE:97:80:3E:C6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
hyfy.app
www.ad-charcoalchicken.com.au
mobile.age-ify.com
aidanholton.dev
ql.aoideveloper.com
appicmobile.com
dev.painel.appjusto.com.br
blog001.autoarticles.net
ewisadmin.auxswot.com
ussd-nescafe.bluerobot.com
boardexamwallah.in
www.boltavenue.in
cargonetlogistics.com
gcp-us-east1-11.dev.app.carto.com
catoninecrafts.com
cbuathleticscamps.com
cemugras.com
chubbysolutions.com.au
poker.ckr.dev
cigor.cloudapp.ar
www.halfland.co.in
app.compte-eco.fr
ps.d-doc.io
darwinwealth.com
devshetty.com
www.drhalityasar.com
bingo.eni-eni.com
etrikallc.com
wordify.faaytech.com
fablescrafted.com
locator.fastsigns.com
ff7e.com
fichauxarchitecte.fr
firebirdmun.com
foldify.ai
franzj.gg
apps.freshreview.co
gazipay.com
admin.gevent.app
greatlane.in
www.ideesprenoms.fr
qualification-de-ag.input4you.be
auth.investimate.app
inweon.com
www.jacquesleemans.com
karttour.net
kevinbouzidi.fr
kyzo.ai
pubkey.l3x.in
lab-collection.com
www.lab-collection.com
laraairportservices.com.au
lowelogic.com
macao-software.com
mc-autoglass.com
mealfit.fr
erp.mediplexthailand.com
carritos.moonsdental.com
quizz.mymoons.mx
www.neemed.org
app.dowell.net.ar
cadastro.libcom.org.br
ascent.parkalot.io
www.paulglover.net
www.paxocare.in
www.pensioenbijgls.nl
ng-weather.phichitsakuldes.com
pm-masaze.pl
potentialsurface.com
www.pulidodepisos.com.co
pywplanners.com
www.redpumpkin.hu
www.revelatorads.com
rgcrane.no
rjtmahinay.com
www.ruusutorpankone.com
saad2xi.com
www.sake-app.com
shameless.art
simplesiteshq.com
projects-dev.sohersabim.com
spaghettios.net
www.sqa-io.com
www.strifehomes.com
tactibots.com
taohsiehwushu.com
www.tellu-app.com
the-grid-game.com
yct.aot.to.it
www.tok-q.com
trackper.com
www.tuayudacuenta.com
turnito.online
typicalarts.com
www.vanny.com
app.wingi.global
link.wminv.org
youniscademy.com
www.zacmawson.com
www.zubairghori.com
Other domains in certificate