Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=homologacao.meuplanotim.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 04, 2025
Valid Until
January 02, 2026
51 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F8:A1:82:F1:E3:AA:9F:A8:0F:65:49:BC:07:A3:2A:70:4D:91:ED:64:0C:40:3B:8A:CE:7D:3D:B1:FF:BA:7D:69
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 5 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
iskconsolapur.org
app.3billionbeats.org
sdk-ios.abra.ac
app.aha.ng
ahm.qa
onboarding.alfie-app.com
amazinglearningcenterllc.com
andrewgolightly.com
apnatuition.store
www.artbyaccardo.com
bayleysblocks.com
familyhistory.belgray.ca
www.bhatandbhat.in
admin.biosourcecorp.com
www.bluedragonflypub.com
www.bluffystore.com
budgetina.com
cardiouroconnect.ca
www.carolynradmanovich.com
link.cashqbot.com
catskillmtnresort.com
plus.colavo.kr
colourednumbers.nl
links.steaman.com.gh
mobilelink.onecard.com.my
www.ctor.app
qrregister.ddc-care.com
digisticky.com
www.dobs.uk
survey.dotaexp.com
www.dyprime.com
eastviewhypnosis.com
www.eclatfoundation.org
central.sgu.edu.in
educationalpathways.co.uk
ethangranato.com
www.fairy.wine
fashion.works
firstchoicefoundation.org.uk
flycheapalways.com
www.g8marquee.com
fn.gocariq.com
manager.gofleet-app.com
www.gojbleh.com
hiloop.ai
www.hopsa.be
kma.impactwrap.com
valortrainingcenter.impactwrap.com
institutoeducativodidaxis.com
www.intekcenter.com
www.jakabi-pitypangovi.hu
www.jenokalinszki.com
lastharmonic.com
winners.leagueapps.com
line39.com
www.log2code.com
admin-staging.luxify.com
ctvmedia.madhive.com
maluvearte.com
partnership.manytouches.com
matrainingcenter.info
www.mayasaba.com
meiameiashow.com
mes-data.app
homologacao.meuplanotim.com.br
www.mitchellarvanites.com
stabilitetsseminaret.mmevent.no
www.moldy.sh
app.mpower.africa
dtwconference.myconferenceapp.com
nalugalavenessa.online
kuemmern.new.de
letters.noahtye.com
nxli.me
ooowl.jp
demo.iotbit.otobit.com
piegolocal.com
pixelperfectshops.com
propelai.studio
stag.psciai.com
realitybrowser.site
www.robertoestivill.com
ruumble.app
scotchclub.net
sepitic.com
www.shahzadsherazi.com
dev.marker.stratosfy.io
www.swaadsimplified.com
pre-production-dashboard.takyon.io
auth.tgame.gg
berlinbrew.thediners.in
tropicadri.com
twiceapp.org
www.useless-corp.fr
virtualminiatures.com
discord.vnw.club
track.webcat.app
teams.widegame.app
docs.xmux.xdea.io
go.zippin.app
Other domains in certificate