Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=sagradospoderes.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 14, 2025
Valid Until
March 14, 2026 79 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:69:0F:1F:D7:9E:52:35:80:F6:C3:05:AC:A0:45:11:E9:2F:07:F1:F8:10:CD:42:D5:D4:51:CC:AA:67:FB:82
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
lizardgavin.com

Other domains in certificate

poultrylab.aaweblabentreprises.com
varsitycup.ia.up.ac.za
admin.acarisolar.com.br
akprimor.ru
quizzproquo.axiomatik.net
focus.b4it.ro
staging-user.bellatech.jp
bingl.net
bloomhub.online
brianthetreeguy.com
stage.pim.burde.com
home.call1800messiah.de
catalejos.cafe
celebritytwin.org www.celebritytwin.org
certishot.com
citizen-care.com
pos.trichy.ammanauto.co.in
app.radar.co.mz
waflo.co.tz
admin.uat.novapay.co.zw
coonscleaning.com
courtify.org
beta.cwdiabetes.com
www.daddynson.app
www.dalchinicaterersmumbai.com
www.deccos.nl
www.detroitcommunitythrive.com
devprolab.com
app-dev.digitalguest.com
edmilyjohn.com
englishlessons.com.br
geo-anatomy.esad.pt
www.evysse.com
fallawallet.com
fined2gether.com
cards.goldenvoices.com
icoffeeapp.com
ictusmed.com.br
soporte.inclub.world
ionify.cloud
mediremind.it.com
itersonmedia.com
www.ivo-tech.com
jeanvosko.wedding
www-dev.kloz.it
kraftmano.com
www.krubbochstubb.se
app.langtrack.app blog.langtrack.app
liftshiftservices.com
lens.limaois.me
link-o.io
webinar.mentia-labs.com
www.msnunesfaggion.com.br
dev.mtotrails.com
www.myduffle.io
mysevakai.com
naanestham.in www.naanestham.in
staging.nerby.app
admin.niloo.io
oficinadoslanches.com.br
net.org.mx
docs.pixello.tech
plyend.eu
postsgenie.co.za
pspsops.com
auth.pt-connect.it
games.quiltt.com
rasllc.consulting
reely.jp
remixsocial.live
rubycakesboutique.co.nz
www.sabatech.in
saddherscalendar.info
sagradospoderes.com.br
www.sawaretech.com
serfibanc.cl
max.sirota.de
skypalooza.de
softhair.site
sossego.games
speednetprovedor.com.br
www.streetfood.network
www.sutilsalonspa.es
tansey-shop.com
plena.tec.br
insight.tekpartner.net
topfloorclub.com
www.utr8-group.com
demo.visidotapp.com
waitapp.in
skmcrm.wemade.dev
whizzmetrics.xyz
business.workbriefly.com
onthego.zestdent.app
volcastudios.zmilesscapitalismo.pt
app.zpiano.net