Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.shop.urjacart.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 22, 2026 59 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:8A:E8:04:D4:73:24:26:4E:1B:77:79:BA:7A:6D:45:94:E9:E6:CE:A3:76:85:03:7B:07:D3:C8:0D:A7:13:3F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
ioid.co

Other domains in certificate

accesoapp.com
adminpig.com
www.alldayta.com
aplusmaintenancehs.com
arcondrilling.com
assimatec.com.br
auth.avidx.app
lima.svr.biz.id
bulkstock.io
app.checkit.events
blog.codelin.vip
sdplaton.com.ph
commstechie.com
cross-switch.app
app.crypto-or-not-crypto.com
acadiana.culturalyst.com
app.cvpatch.com
www.dakiktech.com
links.darqube.com
clientes.dataflyg.com
charter.demoridezum.com
dephyned.com
beta.desktop.vision
dzconsult.com
auth.earnpicoin.com
www.eatinn.com.au
cryslo.edlin.app
efficials.com
ehrpwa.com
ellastonecollective.com
app.escrowitx.com
estudiojuridicocrespin.online
everywindow.com
fadeaway.la
www.falgorithm.ro
liste-vendeurs.fayafree.com
www.filipkowalski.com
finifier.com
nick.gdgpos.com
geminitradegroup.com
www.golfcashgames.com
www.greeninfernoband.com
grsc.cz
healthee.fit
indiecatgames.com
justfais.al
www.laprimapizza.com.br
laserdrift.space
go.lifecheq.co.za
www.linkedglobe.org
loabaschool.com
locusstore.com
lucasgnunes.dev
madebysk.com
www.markbarlow.net
signin.mcxross.xyz
dev.memorigi.com
metaviewsolutions.com
onlineopetus.mrgolfschool.fi
msellernote.com
nanu.co.za
smmc.net.in
specification.nexus.xyz
nightfireagency.com
ooki.co
su.uat.orijin.io
paldeck.app
paug.fr
profeduacces.ro
promptica.app
www.prosupply.mn
pyclimb.com
refinder.app
restobarapp.com
ridesip.store
www.homie.riedel.wtf
ruteachat.com
www.safestackai.com
sarinafurthermath.my
admin.schoolchest.org
scoutingusports.com
seosan-issue.store
portal.sriaadhicrackers.in sriaadhicrackers.in www.sriaadhicrackers.in
www.tacos-elmexicano.us
www.tauruscatering.co.uk
techbyte.cards
www.tensionbutt.com
tirocerto.app
topnotchbuilderllc.com
www.shop.urjacart.com
uvmkayakclub.org www.uvmkayakclub.org
vendah.app
milaires.demo.voyansi.io
xfe.tokyo
www.yampol.ski
client.zproxy.co