Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=inspirehighered.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 21, 2025
Valid Until
January 19, 2026
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CA:92:59:FF:32:DF:31:84:64:B4:6F:34:A7:1C:B3:1F:AE:8E:78:5A:77:A1:C8:A9:BC:E5:67:C7:9A:D9:6C:E7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
kyoko-janai.net
www.adversedo.com
leases.apartmentlist.com
atelierpe.be
embed.awesome-table.com
www.badoca-co.com
short.benam.me
app.biome-hub.com
blockmap.dev
mizuholi.boat-admin.app
bob.dance
www.bylundbil.no
campingrent.lk
picoevents.capricode.ch
carettishoes.com
www.cert-print.de
cheapaward.com
office.milikispace.co.ke
fedrolfreighters.co.tz
profile.gautamarjun.com.np
s.course-calculator.net
pdf.cracktech.org
www.deedmanager.com
staged.destify.ai
daily.dlrc.in
scweb.dpdns.org
mint.e3.io
edriven.com.br
eeecccooo.org
disco.fazzaro.com
www.footuro.io
gemistruct.com
web.genzeebaddies.com
geobregon.com
gueka.net
www.homies.llc
www.imherechat.com
inflowwith.me
en.ingles.la
inspirehighered.com
www.jaipurpinkpanthers.com
login.janpaisa.com
jiachengqiu.com
juicystack.store
open-dev.karriereheld.team
mijn.kieswijs.nl
www.kodaalert.com
www.kuopioairport.fi
leqndev.com
bingo-dev.da.letsdive.io
ops.levita.app
limhenry.xyz
www.cpanel.lmserp.com
firebase.looplive.hk
fireenjin.madnesslabs.net
mail-train.com
www.maity.dev
marcmatvienko.com
mathiasgs.com
www.mig33.net
ministryofseduction.com
tracking.moons.ninja
www.mqasim.uk
munchcard.co.uk
navigado.fr
pic-skywind-de.mentor-stage.neccton.com
www.nico-flohr.de
staging.obrajob.com
www.obrajob.com
portal.okansumer.be
www.onefence.com
www.onpay1.com
auth.ostobuddy.com
peet.me
judge.privatehealthcareawards.ie
pslifestyle-app.net
quadientwave.com
recri.jp
resalaschool.com
reservations.rpm-autogroup.com
salongzodiak.se
backoffice.staging.sattha.online
www.scoringsystem.live
www.serim.xyz
www.spartanshield.in
staffing-react-staging.staffshift.com
www.standinconsulting.com
app.tabiguide.net
bubbon.techartus.com
job.tempestapps.io
www.todee.xyz
maps.tokyomixcurry.com
site.vercellibikes.com.br
hml.vojo.com.br
www.webboter.com
www.whatsinyourfridge.tech
test.onboarding.wokiapp.com
app.worldexchangehub.com
barn.wurdle.eu
acceptance.yellowq.nl
Other domains in certificate