Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=portal.searchkings.ca
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 10, 2026
Valid Until
April 10, 2026
76 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1A:25:F1:C1:D9:46:8A:FC:08:3D:AC:FF:9C:A8:6C:0F:8A:27:7A:CB:BC:02:32:52:1E:5E:6C:20:02:3D:5F:83
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
loremquotesum.com
atmtpro.net
partner.benkon.io
billcircle.in
binyi.run
www.binyi.run
bodhi-log.bob-lin.com
booklatch.com
bronze-tech.org
securite.cdk-group.org
www.cea-box.com
citrus.citronmobile.com
ventio.co.in
www.coachtravel.scot
qr.energetic.com.ec
2kmarine.com.tr
stage.corecentsconsulting.com
cyberescape.co.uk
demo.designertool.io
auto.doxastic.xyz
drgabrielcadena.com
efe.az
eidosverse.com
www.emgcompliance.com
app.staging.enimas.jp
evap-app.com
www.eventfull-us.com
fit-share.net
auth.forgetsms.site
fplscrutiny.com
www.fullspectrumservicesllp.com
getmoulin.com
proposals.gofloaters.com
hakunawmata.com
www.haytruckdigital.com
headbangzamani.com
healinghideawaymassage.com
www.healinghideawaymassage.com
idoleshem.com
www.imploie.com
influyst.com
insureindex.one
johnroussos.dev
jufelipe.dev
k2mechanical.com
kai-agency.com
acceptance.kangacoach.com
www.katflew.com
dev.kime-toku.com
legalprivado.com
quiz.livolinmyanmar.com
lokeshpunwani29.site
loyaloakpartners.uk
magnoliagardens.in
maharusi.com
mariscosguayabitos.com
shell3.maxentwickler.site
medsaver.medihelp.co.za
jurassic-journey.msoler.dev
www.mwide.net
city.mydigimitra.com
stat.neolab.net
noblepete.com
policycheck.noblr.com
crm-demo.nourishx.in
beispielmenu.on-menu.app
basometro-develop.libcom.org.br
f.othercooked.com
www.padelkings.fr
paybotxportal.com
www.pearltaxi.lk
pedrogn.com.br
piladelibros.com
rjp.pinhome.id
www.pointonefilter.com
www.prediciendot.com
quitapay.com
email.renovationphx.com
richardspaintingco.com
dev.rushkitapp.com
saudeintegraldohomem.com
portal.searchkings.ca
sellsnap.pl
shenglin.study
www.shenglin.study
skyframeanalytics.com
russia.solomonschariot.com
sonofthanjai.com
sosickrecords.com
baseballismscratchcooltoday.sqwadhq.com
niuentertowin.sqwadhq.com
studyclub24.com
tracpic-new-qa.stylishop.store
suhailcr.com
tamilkadavulmurugan.com
one-legacy.thrivecap.com
tutramiteya.com
utmnondegree.com
www.vafh.org
vinver.ai
Other domains in certificate