Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=dashboard.pesepay.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026
74 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CA:9A:25:93:83:15:6F:AB:44:00:15:1A:86:CF:0A:D3:B2:C9:18:6A:5D:D5:61:90:3B:9B:F1:04:ED:EF:4D:AA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
ilmiovino.it
dev.reseller.metrofibre.28east.co.za
jeromes-test.3dcloud.io
sites.accorbis.com
maintenance.axend.io
ayushsitar.com
bildx.studio
boatbook.org
brandonsayring.com
casaswok.com
los-angeles.clapclap.cl
closedcaptioncreator.com
www.cloudmallnews.com
cmwo.in
oliyubaraj.com.np
merchant.fastpay.com.tw
digilink.vietcapitalbank.com.vn
completehealthandhealing.com
appv2.construyo.de
ide.creaive.ai
crowdform.co.uk
www.schule.davidhbassler.de
daysgoby.io
devhour.us
www.doactrust.org
drawgazer.com
www.edgeofnature.ca
emergentbit.com
world-flags-quiz.fedmich.com
krotonal.feridaroundtheworld.com
auth.flatweb.dev
flightcontacthelp.com
gabrielverronet.com
www.greenlit.tech
alp-pwa.greenvolt.by
www.guitarlessonsbelfast.co.uk
www.hoefl.at
doxuanchien20224933.id.vn
www.imkind.in
www.industrylinq.nl
atelier.input4you.be
www.invister.com
joiaturismo.com
job.kennys.nl
key.3355.studio
www.khetikalyan.com
learn.leadershipsolutions.nl
licorice.me
beta.fraction.lunarworks.co.uk
www.maxcalculo.com.br
metodocircum.com
dashboard.mindfulmission.earth
mix-your-tracks.de
link.loc.mobilea.nl
www.motodachi-app.com
www.myta.la
www.nairutyalogistics.com
nature-extract.de
pic-tonybet.mentor.neccton.com
home.oshika.com
dashboard.pesepay.com
www.phyppz.dev
www.piiaketo.fi
snake.prabhashlk.com
app.r3volutiond.com
www.app.reviziegaz.ro
rodobros.com
asq.sadfish.io
demo.sagacityintelligence.com
salestraining.video
developer.samaalthawaf.id
sanyazdani.com
admin.scoorjepr.nl
seizu.es
servicios-amr.com
dev-admin.shvrkpools.com
sidcagremio.com
skatliste.app
app.skillfeather.com
jupiterbuy.smeretailsolutions.com
marketeer.snowdon.dev
spacewiz.dev
ksusweeps.sqwadhq.com
state-of-the-world.org
stopwarukraine.com
sunnimohallaclinic.com
www.syskim.com
www.tariksefa.com
www.theminitools.com
three14.llc
tkconline.org
topps.app
www.tubelaces.com
auth.google.tvcultura.com.br
mission-control.alpha.versify.app
www.vickycodes.com
convocatoria80.vlivemedia.com
voxelcubes-games.com
whirlpool-cundinamarca.com
willowcraig.ca
Other domains in certificate