Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=beta.7kake.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 09, 2025
Valid Until
March 09, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F0:7F:34:BF:BC:6D:D7:98:3D:F4:1D:D2:90:36:83:BF:54:54:96:09:4B:B0:F6:78:F6:CB:C2:B6:20:AD:11:62
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
johnshanahan.com.au
beta.7kake.com
v2.gutscheine.additive-apps.eu
agrotrack.uy
dsccwmsoutside.algoramming.com
www.anastasiamiliano.com
testing.austta.com
avinyaautomation.com
my-metrics.azul915.com
bcslebanon.com
blacksapphiregoa.com
www.fila.bluve.com.br
www.bobsizoo.com
www.botleyexecutivecars.co.uk
www.boys6.nl
www.mc-soft.co.kr
www.conversantts.com
southernsaladco-orders.crispnow.com
dealaide.com
distillate.jp
www.dnlnwk.de
massdrop.dropshiptee.com
cdn2.earningsahead.com
api.earthimpact.me
qr.expritan.com
ffxivprogress.com
www.forecast.my
kroger-admin.gotshift.io
www.grupal.es
www.happystagger.com
www.harshaljadhavandassociates.com
hnsummary.com
threshold-management.hotwax.io
therapyconnect.hub9.io
idealexperience.es
ingogo-traveller-staging.ingogodev.net
adcenter.familotel.innfactory.cloud
www.iyengarscreations.com
invite.jaib.live
jamesmtchou.com
biblia.joaocouto.com
katiecheng.com
admin.lieferfabrik.de
www.manibot-project.eu
martamo.com
mawagra.se
auth.meetlio.se
www.micro-tracker.com
www.microdynamics.cloud
www.mmddevelopers.com
mobileai.dev
www.moinworld.de
mrtporteur.com
www.mummoku.com
admin.music-hub.com
mycompanytracker.com
essma.mystadiumsapp.com
myworldofmouth.com
nearestschools.com
annualupgrade.neoufitness.com
app.newzgamez.com
nyeusiapp.com
whitelabel.onfact.be
www.operationify.com
protegebr.olabi.org.br
ourpuzzleapp.com
keeper.paidkeeper.com
www.panag.ca
demo.paperstac.com
www.phaeon.dev
l.pigxu.com
www.prioritywarehouseservices.com
qofii.com
www.rachelpatino.com
raicescapital.agency
re-arc-lab.jp
auth.relish.com
rochasilva.com
github.ui-clone.ronne.dev
planit.root38.com
unm.engage.sasaki.com
www.scsports.eu
app.seamansclub-cat.com
seamansclub-cat.com
www.sectrkuttikad.com
smachnavoda.com
app.soulcial.com.br
www.spinetv.com
www.steppbrett.com
stoisk-ro.dk
l.sutochno.ru
tanjafrisch.com
toolabs.com
uppply.com
vaspro-ltd.com
vedictax.com
enterprise.velauto.com.br
whackakevin.com
williamthomas.digital
zq-signal.com
Other domains in certificate