Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=ridogangra.infinitifood.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 03, 2025
Valid Until
March 03, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7A:48:BC:F9:B4:58:20:54:60:4B:0B:5F:A8:0B:D3:F8:2B:4A:4F:BE:2D:6A:2A:72:28:78:21:2C:A9:ED:F5:9D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
l14.lhotatrophy.cz
the-clubhouse-dev.1stcutoutings.com
my.32desk.com
alimount.4hotel.tw
ra.acumenacademy.org
www.adarkdroplet.com
adventureteam.pl
alisdairmills.nl
almalakysoap.com
medisim.amcsoftware.pe
betsierra.com
app-staging.brookesnow.com
charlesbuwa.com
chinmaysheth.dev
www.gyme.co.il
www.aprisa.com.tw
www.controia.com
ecomadminv3.corpolatech.com
share.dashocontent.com
sandbox.dealflow.app
app.staging.dogfydiet.com
www.dotbuilder.tech
dropshipr.io
visionwatch.easysignage.app
esiha.tn
www.falive.org
fomerealty.com
i.foxpay.vn
futuredynamics.dev
docs.gabismartcare.com
generadorenergia.com
www.guillaume-attias.com
hilaliavwedding.com
www.hoxx.com
core.icampusconnect.com
www.ichinggpt.com
ridogangra.infinitifood.com.br
thepunchdown.innovint.us
istmgr.instabiz.jp
sandbox.investorportal.app
itsdonzo.com
stockset.jeffersonfreitas.dev
jgforsyth.com
pdf-viewer.kiite.ai
www.laplaceapps.com
lesnistezka.cz
linkosm.com
game.lync.world
admin.macademy.in
www.maemo-llc.com
makeadecision.app
mcloud.makrshakr.com
app.moments.cards
fashion.monocle3d.com
mustafaceylan.dev
4m.net.br
nomidesign.pl
notforme.org
www.obat.io
ossaplatform.com
pankajacreations.com
plani-concept.com
qgiv.us
realstreet.us
www.restfulmindmh.com
www.richlira.dev
www.ritualzzz.com
www.rpisoni.dev
www.rssdelsureste.com
dashboard.runwithzeal.com
app.seedtrace.org
sengsushi.de
www.sisinpos.com
soicau30s.com
materielnet.speakylink.com
usimeca-app.speakylink.com
about.swapnilmore.page
waterheaterquotes.teamenoch.com
dev.campaign.tekutekulife.com
tenkafuma.com
temp.thinkitsoft.com
sciencepark.ticketbuddy.in
tnns.dev
apps.tonestro.com
notification.traxporta.com
www.tryditor.com
twotalltwins.com
union-bauzentrum.de
urbaniatourstravels.com
www.urbaniatourstravels.com
valk360.com
velvettier.management
beta.mobile.haven.viancorp.net
voxxy.chat
www.waldbiber.de
winid.me
hauler.yourdocket.com
www.zerito.in
zerito.in
app-dl-redirect.zf-staging.com
Other domains in certificate