Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=app.wu.marlim.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 26, 2025
Valid Until
February 24, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
14:E4:70:A6:50:4C:1F:50:8D:10:3B:63:F5:63:AA:2C:45:9F:7A:2A:38:B5:1C:C1:D4:5B:19:F2:61:C0:3B:35
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
klug.gt
www.klug.gt
bookings-app.airhopping.com
www.alalidrivingschool.ie
algalon.network
www.algoltech.com.br
antidot.ca
app.audit-app.com
www.ayapi.com
bartweb.cz
docs.betoto.pet
www.carewokx.com
carviox.com
cognuscraft.com
ashok-yadav.com.np
correctsms.ai
dalaran.network
me.dalaran.network
www.dalaran.network
www.deepholm.network
emaki.dowg.house
www.easyticket.ai
elevate-tech.sg
elwyn.network
www.elwyn.network
elwynn.network
www.entelechia.net
demo.eventmaster.jobs
inicio.futuralabs.mx
ariranha.g2canal.com.br
mobiges.ges.digital
legacy.getlaika.app
glambase.shop
education.gom.digital
www.hamzafetuga.com
hmc.links.healo.app
app.honenetworks.com
smartwatering.hostabee.com
p903i.ikuzaki.jp
dev.link.imaginarie.app
app.pedidos.implemaster.com.br
irelax.app
www.irelax.app
www.joinalias.app
cemex.joulebug.link
kassenweb.ru
madhavretail.com
www.marinasocial.com
app.wu.marlim.co
admin-beta.minagroup.com.mx
pdfmerger.n1c0l4.com
neblx.com
ndlm.nirmaan.org
lms.nold.ai
site.off-road.io
auth.offgap.com
eat.tribe.org.tw
www.ownbrands.app
staging.audits.paperstac.com
tool.patron.me
pennet.io
demo.pensioeninzichtonline.nl
i-dev.planaraid.com
www.planebooker.com
dalton.poppyplaques.co.uk
www.presentmania.cz
studio.prettyprompt.com
propertybuddy.app
puzzlestory.app
rbper.com
link.reflection.app
sandbox.rentakia.com
responsivebyt.es
app.riosroofingservices.com
romskyslovnik.online
www.saharadroptaxi.com
app.salestudio.com
samgwang-pms.com
pptou.scoreclever.com
screenbox.app
solarplus.pro
songofthe.day
bodajaimeysohamy.swanmoments.net
padgett.tallyfor.com
admin.techietipswithme.com
trysteady.app
www.tylerbenson.me
verification.ukrainenow.org
ulog.ai
links.vidoctor.vn
viviendaa.com
resume.vntechsolution.com
www.vvbergerven.be
waocompanion.app
app.warest.de
attendance.watermarkgohealthid.com
wels.app
work.gi
www.xylobuddy.com
www.yitnow.com
Other domains in certificate