Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=northbridge.academy
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 09, 2026
Valid Until
April 09, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C5:55:23:F2:D9:BF:16:45:24:FE:4E:62:E9:32:3F:31:71:75:69:C5:C6:74:5F:83:3C:75:06:ED:BD:3E:42:33
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
iotasistemas.com.br
1stopdhido.com
406maintenanceandremodeling.com
adraff.com
amorpheus.ai
anaico.com
aquacalcaire-enr.com
www.ardon.au
www.arrovox.com
app.arvaishop.mn
partners.baroquetravel.com
www.baryncard.com
beigeunicorn.com
bellautomationsystems.com
betmaster-data.com
www.betmaster-data.com
beyond-boards.org
bolsadescentralizada.com
brokenindustry.com
www.capacitacionminerahadassa.com
cardinalprideproperty.com
spincycle.co.id
crownedroofing.com
www.daontario.ca
production.darklabsubscription.com
openli.datonix.in
www.davidradjaidev.com
dcrhrcs.com
dimension-solutions.com
www.dragonridergames.com
www.drmadhuplasticsurgeon.com
eg-solution.be
www.etimesltd.com
fightnightbookie.com
findorask.com
fruitamo.com
dashboard-staging.fsv-aptor.com
users.fudli.com
gofreeltd.com
www.gofreeltd.com
lotto.gogaman.com
grafiblend.com
gyldantech.com
alomigo.handydat.com
np.hatari.cc
thiagorocha.ibhava.com
doduonghung2417129.id.vn
duongnguyen2417117.id.vn
leminh.id.vn
phuongptb2400069.id.vn
empresa.jobecam.com
journeylab.com.co
karingana.net
thp.ktech-thp-dit.com
lafondationdesorphelins.fr
lavilladieng.com
operations-testbed.logivan.com
luckymegame.com
lunchbook.app
mapafiscalrtc.com
www.metacogmission.com
biblioteca.mijardinjunji.cl
morningbuddies.com
www.mslawnlegends.com
nacionaludia.com.br
northbridge.academy
www.nulida.com
omcox.com
sales-dev.onerevolution.com
online-image-compressor.com
oppositeday.co
glf.ovenfo.com
app.paycrunch.in
pearthlending.com
demo.pocketrag.app
1101.pontuax.com.br
portovet.com.br
praiasdoisar.de
prediciendot.com
qurr.app
www.qurr.app
shiohama-sigma.com
slatefitness.co
sloppypotatoes.com
sneham917.com
hockeyeasttrivia.sqwadhq.com
steadfastexteriorstn.com
redlabel.member.stickie.link
redlabel.stagingmember.stickie.link
admin.svenjobs.com.au
www.swingli.app
tadashiokabe.com
www.techtoall.org
app.rasheed.iqraa.togits.com
tracknup.com
web.voveid.net
winklook.in
portal.woonig.app
zat.com.ar
www.zeroxin.xin
Other domains in certificate