81/100 SECURITY SCORE

Certificate Information

Subject
CN=uoman-amagasaki-qs-mall.cfs-japan.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 21, 2025
Valid Until
February 19, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3D:D3:BA:36:70:38:44:92:0B:65:6A:3A:40:84:B0:40:01:05:DD:CE:DE:94:D8:83:AF:97:A2:55:F3:80:A0:A3
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Weak
require-trusted-types-for; report-uri; object-src; +3 more
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)

CAA Records (Certificate Authority Authorization)

CAA Records
Configured (Restricts certificate issuance)
Current Issuer
Authorized (Matches CAA policy)
Authorized CAs
Incident Reporting
Recommendations
  • Consider using critical flag (flags=128) for stricter CAA enforcement
  • Consider adding 'issuewild' records to control wildcard certificate issuance

Subject Alternative Names

100 domains
identity.getyourguide.com

Other domains in certificate

3awda.site
publisher.adgenticplatform.com
akasa-s3-booking-json.akasa.lk
aykaryapi.com
becalis.com
www.brainsderby.com
uoman-amagasaki-qs-mall.cfs-japan.com
www.chronovault.app
cismacore.com
www.cloudmall-uk.com
kraftmusic.co.kr
lumat.com.pl
condominder.com
cybertruckwiki.com
dallasandgioschicken.uk
dannybsullivan.com
dentzay.com
lydear.deweysworld.app
www.diegoflassa.dev
digitizeme.com
www.dminsnetwork.com
video.dn2me.com
drivesphere.org
dullatinfrastructuresquarepvtltd.com
duque.bar www.duque.bar
pdv.eceos.app
eemi.tech
elf.world
estimatesmaker.com
ferrymarroc.com
inscripcions.fic-cat.cat
link-sbx.fintecture.com
notification.forja.cc
academicum-renewal.geddy.com.br
admin.glorified.io
googel.app
kiosk.grace.app
split.guzguz.fr
www.gyms.jp
redenvelope.hainanairlines.com
hippona.eu
hitchcock-farms.com
hockeystats.dk
admin.hubjur.com.br
hudbarbers.com.br
illuminateuniverse.app
indesigngraphics.com
ultimate-signup.ip-ddns.com
student-dashboard-stage-4.ischoolconnect.com
ads.jajas.in
www.jamesdavidpresents.com
jasperreddin.com
joa.live
jupiterdistillery.com
justdrinkbinge.com
www.kaslami.app
hapala-dev.lohnbot.at
maneasilverband.co.uk
www.mariusjakobsen.no
milantoursandtravels.com
montinv.com.br
www.msradiologia.com
absensi-perkuliahan.my.id
jiot.nenoluyo.com
thiepcuoi.nhungmagnus.com
oken.app
omarcarpinteyro.com
ona.vc
pb-i1.s.openkind.me
www.optimoo.se
moon.org.nz
paigham.app
phucminhtravel.online
polvo.site
links.qodwa.app
rdorid3012.in
projecthub.redwindow.tech
www.remosea.app
sandlab.xyz
dashboard.searchhammer.com
skywatch.studio
dev.sltechnology.net
view.smoky.no
www.soundtouch.xyz
dev.studyspace.io
tiles.tfx.is
thedeck.poker
www.thepurpleblossom.co.za
app.trackero.io
trange.app
travelor.app
forest.turnosweb.app
app.urbans.es
www.vitoneto.com
dev.wandellint.nl
wayve.live
www.wiltshire-global.com
zaga-in.com