Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=flixfoxapp.store
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 28, 2025
Valid Until
January 26, 2026 54 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
62:3F:1F:17:D9:5C:D0:75:41:07:3D:E4:6B:13:E3:BD:79:3A:06:AA:99:D2:04:D4:A0:85:B4:D7:2E:43:48:ED
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
krzysztofziembla.pl

Other domains in certificate

2016.ng-conf.org
staging-homephysio.activlife.my
aironworld.com
viewer.alis.mobi
web.analitica.id
annasinger.pl
member.apollothai.com
tapick.console.staging.appabrik.jp
app.apptranslator.io
www.avivamientojuvenilarizona.com
ccdt.azerp.vn
babymassage-mit-herz.de
benhviencaylua.vn
bluetrailsmusic.com
www.boxalino.com
www.brilleninfo.de
www.byjapao.com.br
www.camerareadylive.com
casadecarnesbertotti.com.br
brod.clau.io
www.cleverr.in
okartadmin.cloudbade.com
eduvice.co.in pridesolutions.co.in
t-reward.tmanpharma.co.th
hub.cognian.co.za
yeedee.com.ua
www.courtspaceapp.com
dmtecn.com.br
dobits.co
douze.info
www.eddy.dpyl.com
www.duelingground.games
creator.echoes.xyz
economycity-hy.com
leavenworthtimes.enotice.io
www.entreecuvee.com
be.explorethecity.it
www.felicityconnect.com
flashtechengineering.com
flixfoxapp.store
www.food-carousel.com
test.fotografosantiago.com
www.futbolclubusa.com
testing.gamoteca.com
goengin.com
admin.collect.gotrendable.com
yunona.test.graphite.space
app.hairmake-theater.com
handcart.xyz
register.healthpointe.team
speculativedesign.hishine.co
www.hkieged.org
www.hs-recovery.co.uk
dev.induro.io
assets.innedit.fr
link-nam-cheong-place.jec-digital.com
kb-notaires.fr
www.kiddables.com
www.kirjanpitopalvelutoivonen.fi
www.leena.dev
www.lepetit.app
www.looch.dev
www.malintha.com
cms.manytouches.com
www.mcnet.in
pepper.morwiko.dev
www.namehacker.net
calendar.nova-c.dk
app.orally.network
telegrambot.pandapixelcraft.ru
www.planphy.com
pramanindia.in
auth-operations.quantiful.io
renegadeape.ca
runtalos.com
safecircle.africa
torneos.sanbernardolawntennis.cl
www.schedulelab.io
selfimproving.dev
www.sharekey.com
silverback.cl
www.sleepy.help
sfg-app.speakylink.com
www.stateless.nl
www.thesimplechemics.de
www.toptilestramic.com
photo.tutamkhamon.com
www.uhstechnology.com
admin.vieexperience.com
www.vintagepunks.com
www.whitevillasamui.com
www.wishworlds.us
wsbalerts.com
www.wudesport.com
www.xcapeinc.com
s.xiphoo.com
isthecoffeeready.yandlapps.com
daria.zarebska.me