Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=perspectivementor.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 27, 2025
Valid Until
March 27, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:9C:C0:03:56:1D:C3:FA:36:36:06:D3:2A:50:F2:26:60:D2:DF:F8:AB:54:55:B7:14:FB:72:36:54:17:D6:F6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
jhoor.com
www.aavrti.com
solo.aegro.design
service.alko-garden.cn
anantapodder.dev
andalsopress.com
www.andrewhuang.xyz
asia888app.org
app.atschat.in
www.automize.dev
whatsapp.bancodeserviciosfinancieros.com.ar
lms.biomedsquad.tech
staging.backoffice.brickwise.at
www.bycroofingnpainting.com
booking-engine.camping.care
carboncabs.com
onboarding.carplayapp.us
staging.charat-kuji.jp
www.checkpoint-trading.com
www.chown.org.uk
auth.darksci.eliteacademy.co.in
www.codedogs.dev
www.consulticx.com
baddress.culture.systems
www.delowartechnicalservices.com
www.drckaminski.com
portfolio.dreambigwithai.com
resume.dreambigwithai.com
techies4tomorrow.durhamcl.com
www.eclairfac.com
www.eduardoe.com
vendors-admin-qa.enchantchristmas.com
www.samudaya.ettarracoffee.com
dealer.evo-ip.io
f3.events
farmaciapertodemim.com.br
www.fastproject.co
resume.gauranshsharma.com
dev.links.getpigeon.com
www.glennknight.dev
press.guarentee.ca
storm2501.id.vn
www.internetcommentbox.com
www.iran-bazar.de
isthepubopen.today
jcorralesfer.com
jessewoods.net
jiwar.io
iotconnect-hsw.kapion.de
www.kbycreative.com
kebapciseyhmususta.com
kenmerksoftwares.com
www.kirkleeswelcomes.org.uk
www.kristiansens.se
lazycaption.com
leafautos.com
leightonelectrical.nz
www.leurialonso.dev
meditator.levelupatlife.com
internal.lifo.ai
api.littlehelp.eu
mint.milliondollarvault.io
www.miniansoftware.com
elliss.moesalih.com
monpainquotidien.com
pic-alcqa2.mentor-na.neccton.com
pic-jackpot50.mentor.neccton.com
normannjensen.dk
ophera747.com
ozgurcelik.com
pay-up.co.za
perspectivementor.com
www.piano108shop.com
dev.pipesnstuff.com
dev.prodmmd.com
protonss4fun.com
www.proywant.com
quinnscomputing.com
refer2code.com
robertjdalton.com
savlassociates.com
www.schoolyear.us
web.seasonshare.com
skyzex.com
converter.smoothpdf.com
www.snailbyte.games
spie-ics.speakylink.com
www.spendimy.com
stonegatetrading.com
members.thepcrtest.com
manager.treembo.com.mx
underengineered.dev
unloc.ltd
about.v-llage.com
vhealfoundation.org
auth-staging.vyzer.co
wadho.com
t.wiyak.online
www.wurkspaces.dev
admin-quality.yodo.ch
Other domains in certificate