Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=assine.netcore.net.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026
52 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B5:A2:8D:AB:A4:ED:67:5E:4D:C3:5B:47:48:61:A7:99:ED:F2:76:B5:0B:BD:35:87:B5:CD:4D:D3:73:B8:8B:1C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
impact-and-values.com
instructor.academix.dev
www.adamtsaidev.com
staging.connect.appabrik.com
burberry.appliedinnovationexchange.com
create.appsaur.com
aspirebehaviour.com
atacan.dev
cnav.audi-on.com
twpt-dashboard.avm99963.com
cards.awepay.com
best-retirement-service.com
signal.biory.app
tsab-app-config.bontouch.com
www.bookavet.com.au
www.borits.com
bradciechanowski.com
mintveggies.broccolirecords.com
varanexus.cancanyou.com
www.caseworker.scot
caspersenterprisesllc.com
www.catalonia.citizenlab.ca
web.cloudtcm.com
elimalka.co.il
dont-tell.co.kr
www.codingbee.my
adacpoc.convercus.io
cruci-ball.com
danielamanzotti.com
www.dilettante.lv
links.dirtfree.net
www.dmmgroup.id
www.dorrells.org
dropit.hiphop
liceosanjoseupala.ed.cr
ejohealth.com
enochtoys.com
dashboard.esafe.com.au
www.fatlittlebuddies.com
link.fdbk-app.com
futgod.com
giftylabs.com
harrylab28.com
innerpeacestudios.boats
invatu.com
app-homolog.investoetf.com.br
phucanangia.io.vn
sop-stage.ischoolconnect.com
jambuddy.app
jasonrahm.com
jesus-salazar.dev
www.juke.band
juliegendron.ca
juliencohen.com
juncojunco.com
www.ketobuns.com
test-auth.neuron-dev.keurig.com
www.lacnog.net
dashboard.lendinary.com
lensflock.com
universidad3b.lernit.app
lizmitchell.dev
www.luxetravelbids.com
medium.camera
metalinqsa.com
app.minubia.com
programs.moregooddays.com
nakajima-akinori.com
assine.netcore.net.br
nsmimmigration.com
www.offensiveshell.com
onepercentcashback.com
app.onwater.de
web.orgaster.jp
admin.dev.petfoodscan.com
stemmen.plankenkoortsfestival.nl
potomacdining.com
ranisvoice.com
rightleftcreative.com
runnerty.dev
www.sarogyo.in
saurabh.dad
www.savorybao.com
de.skygo.com
rbasandbox.softtouchpos.co
web-game.sooyadev.com
app.spinup.capital
chargersmemorymatch.sqwadhq.com
stocktondrywallllc.com
tapworx.com
thedsignstudio.com
encuesta.theplanetapp.com
obrucheva6.tom.ru
healthcare.rfi3.tresastronautas.com
ultimatemile.co
valentinajordan.com
link2.vocepede.online
wehappy.se
www.yellowpizzas.com.br
zachary-sturman.com
Other domains in certificate