Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=themaze.polngames.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 19, 2025
Valid Until
February 17, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7C:3D:37:54:BF:96:CB:9E:54:69:04:7F:C8:91:7E:C2:25:12:94:F6:1F:CE:8F:86:1F:E1:47:B2:C5:05:E2:F9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
kizki.life
www.abeerenterprises.com
agamworks.com
convencion.ampip.mx
www.appyx.io
www.autoclarity.co.uk
www.autthentic.com
auth.bet4stage.com.br
binaryum.com
link.bladewallet.io
blankly.finance
my.bookingleaf.com
brahmahandicrafts.com
butov.dev
cabinetmedicaldesmarots.fr
www.cancelprime.com
captain-retag.it
carnice.cz
meeting.cashwalk.io
www.chakkumkodefoods.com
dlm-dev-login.chatleadspro.com
synco-jfl-beta.roadcast.co.in
www.hiringbuddy.co.in
bbnt.co.th
loopholes.colerobertfisher.com
jobs.coturiv.fyi
www.cristiansarghe.com
www.cryptoartiste.com
dis.repair
dspot.studio
ecorganic.africa
www.hcsnp.edu.in
www.edwardsmyth.com
escolarsalvador.com.br
www.fervorhub.com
www.fgacoolitcard.com.au
frozenphoenix.com.au
auth.getstoryshots.com
grajeshmhaa.com
growth0623.com
guelkebappizzahaus.com
test.healthfolio.in
iaramcco.com
dlink.itsuoka.com
app.jollybattle.com
www.kalavedi.org
ko-max.com
www.kommando-blau.de
leadertrip.at
test.lockit.rentals
app.lohnbot.at
luongbui.com
mahnoor.dev
ver.maquitec.ar
marcoscarbonell.com
test.ikhaya.mayais.co.za
meadworks.io
mehthab.me
meuproximocelular.com
www.misung.co
munhoz.se
dev.myfoodplanner.com
newvintage.studio
www.notrealamazon.com
nyepropiedadraiz.com
oddspony.com
appv2.painsled.com
bdo.parkalot.io
sandbox.playbook.vc
techtunneltreasures.polngames.com
themaze.polngames.com
toughbookchallenge.polngames.com
beta.prepworx.io
calderdalec.qrq.app
www.rainbowpixels.io
recruiit.co.uk
regodog.com
www.resource.coop
ti.rossi.com.br
go.rwd.to
quiz.scoutout.co
www.semscasting.com
sic.ac
social.snapsoft.io
vetapteka.stovbur.kz
studio-particles.com
superguy.cool
my.symmio.com
www.teambuildinggamesworldwide.com
thecoverletter.app
www.thehelloworld.app
www.thelumiglass.com
tigerverse.org
atcheck.trackerbin.com
www.tylergordonhill.com
fest.unfold.no
www.vidoctor.vn
app.webdyno.io
worklistproject.com
www.8110.tv
Other domains in certificate