Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.undefeatedsoftware.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:AA:EC:9D:1B:1C:4B:BC:0A:B8:39:7B:B3:59:AC:C1:25:7A:38:8A:F4:37:65:1C:EB:13:66:EE:CC:D3:8C:0C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
integridade.cazanga.com.br
ray-sectional-config-cert.3dcloud.io
www.advertorials.nl
demo-painel.aebroadcast.com.br
www.alejandroandre.dev
www.amalficoastapartments.it
www.ar-infra.com
bannds.com
bastienclement.ch
www.bluesmerize.ch
myscheduler.candiceai.co.za
pay.cashrichapp.com
casted.fun
kex.ceder.dev
portal.charitysuite.uk
coastallabs.io
emeraldsventures.com.ng
www.easyvote.com.sl
www.coursemagnet.com
www.creativetechcoop.com
madness.dangraphs.ca
test.decodedhealth.com
qrcode.ecfone.com
firebase.ekoyudhi.id
invite.fintelli.app
fireenjin.mx
admin.foodaciously.com
www.forreal.dk
fufu.be
gnadenweiler.de
t.haandvaerker.dk
chat-hom.hipoia.com.br
blockchain.humidefi.com
www.immersified.com
basqueueai.innrsys.com
jasmeenimmigration.ca
burger-builder.jimnguyen.dev
pwa.johnshortland.com
www.jordanrhodes.dev
keglerouletten.dk
www.keglerouletten.dk
www.keynotecast.dev
bongo.kindbeetle.ru
www.kitchenphysics.com
koi-lang.dev
koraltech.in
message.lanissan.ca
www.lmminspiredwords.com
www.luckango.com
www.lukul-sadska.cz
molzait.com
www.mooncoins.ru
fukke.muchimuchi.dev
www.neconeco-defense.jp
needle-project.org
nicole-tsang.com
www.nikolaiarsentiev.com
niren.jp
ollietroward.com
nbfsc.ondagoapp.com
www.ontask.co
admin.dev.orderease.com
www.orienta2.es
www.parkyypass.com
piedivino.com
www.prestaya-latam.com
kraken.quebecorhub.com
chauffeur.quotemelimo.com
www.sagarpathare.com
satshealth.com
scalesai.online
importer.segna.io
links.send.reviews
links.sessionpunch.com
azan.shazvi.com
invoice.shin-a.tv
app.shoplitlive.com
www.sliceq.com
www.snipnshipja.com
www.spankmonki.com
sporter.llc
org.stagingnexa.com
www.stoneybrookhollow.com
www.szabonorbert.me
teachseats.com
designer.techydhruv.com
www.theiajobs.com
thomassouvlatzidiko.gr
qa.tieple.com
triviafiesta.com
www.tilaus.tulkki247.fi
bosque.turs.mx
www.undefeatedsoftware.dev
visualcelebrities.com
www.websupport-services.com
upload.winnerspt.kr
withvr.app
www.woodvalecounseling.com
www.x4prodchart.com
yoopine.com
Other domains in certificate