Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=app.indicors.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 25, 2025
Valid Until
January 23, 2026
67 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
35:EB:CF:91:E8:11:EC:8D:6C:3F:B2:3E:17:6F:9B:DB:4F:A8:F3:1E:4B:2F:AF:01:F6:98:94:C9:37:31:AF:E5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
jefferyhatch.com
dirtybit.12traits.com
ahaevent.org
pudukkottai.akdroptaxi.com
tirunelveli.akdroptaxi.com
tiruvarur.akdroptaxi.com
www.anosales.net
www.aromaklinikken.com
atelia-patrimoine.com
autographchecker.com
notes.babaaman.com
balloonartist.in
devglomocontinuity.bbva.it
beachvolleyball.space
biathlon.io
bluberypancakes.com
www.bodymap.ai
brightuplabs.co.uk
bsidesbangalore.in
bx2group.com
app.dev2.casus.ch
www.catalina-wine-mixer.com
classy.menu
makeupmaster.co.in
www.benjamin.co.in
www.collectiveaction.dk
ktaxic.ktaxi.com.ec
admin.aftersales.scinnova.com.ph
www.commonloyalty.com
sillasysillones.comounexperto.com
gacha.conquestph.com
app.contract-dewatering.com
app.dacade.org
docin.dev
customershipping-q1.dpduk.dev
dwhtest.com
www.eugenectang.com
jugendchor.fecg-speyer.de
financeiro-homolog.gestordoagro.com.br
app.getlovebug.com
gngits.com
gototopay.com
super.hanak.in
healthlk.com
homedinamics.com.mx
iassystems.com
www.idecasa.mx
app.indicors.com
app.inovaed.com
ivanzim.com
app.jibun-apps.jp
services.just.insure
www.keindeya.com
kemecuador.com
kerlonkerlon.com
leadership-profile.kevinlaird.me
kirandev.in
www.kotoko.fi
logflop.com
modusdirect.madhive.com
www.maucobytes.com
maunayoga.org
merrycryptomas.com
calculator.mifinancialplanning.co.nz
mindforge.in
solicita.mybiznez.app
myjourney.icu
newfoundtrees.org
app.nexgami.com
nguyenkevin.com
nofearbear.com
notefuel.com
www.optiminy.com
votebedrock.pokefind.co
mentoria.profaulashow.com.br
scorecard.progressivemass.com
search.qoople.me
dev.readingformeonline.com
rockstarlab.dev
auth.sayhello.cash
www.segotravel.com
www.shopkeepovertimesettlement.com
it.silor.it
simplems.net
portal.skylarindia.com
www.startem.io
stock-poker.eu
www.sukitustarvike.fi
www.syncker.com.br
dev.teacup.gg
invite-ping.telebu.com
temanhaji.com
themangalview.in
engineering.theorygenerator.com
www.timokurtz.de
trashbasher.fun
www.txfamilydoctor.com
www.unifiedministries.life
www.vivadigital.hk
www.wifi-speedtest.com
Other domains in certificate