Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.studiomango.net
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 05, 2025
Valid Until
January 03, 2026 51 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0F:7C:9E:90:6C:0D:8F:60:C7:06:CA:CD:83:37:0F:01:91:62:73:89:41:44:CB:97:64:8D:B3:6F:41:24:F6:6E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
lucidstreamer.com

Other domains in certificate

11521317.peerly.app
www.4kgroup.org
5star.au
app.actionableinbox.com
www.aidia.it
alexpete.com
www.allisonwillyougotopromwithme.com
alt-doc.com
amenconference.com
www.antonioviannakarate.com.br
athenas-capital.com
badwulfie.com
balzenda.com
beercheers-llc.com
www.beliantech.com
auth.bigideai.com
www.birthdayhero.us
quantix.bromine.dev
bttger.de
camify.app
cardboardsalad.com
chabbaman.com
sso.chemin-neuf.net
chidy.fit
closar.com
docs.cloudedgedistribution.com
v247.co.th
codyflood.com
colloquies.app
dashboard.comodohotel.app
copon.ai
dannydvo.com
wikispeed.dataflakes.ai
directsolutions.app
edipsi.online
efantrifebriansyah.com
everythingisvega.co
links.webui.cplane-stg.evision.ae
www.familytools.app
www.fantasywayback.com
hadaward.com.br
staging.photo.harimau.run
heliojr.com
www.holaqr.com
huseyinberk.com
hydraink.shop
itech10.com
karnawatinternational.com
kimscafe.ca
www.locksley.app
webapp.masterpoolsguild.com
www.meevi.dev
moranba.com
v2.mp3paw.link v3.mp3paw.link
dlcnm.myassociation.app
mybadbro.com
docs.nagro.com.br
www.naomijoseph.me
www.numbus.app
nyashamutazu.com
sms.pmam.online
popshop.live
pressurepro4tx.com
prophecysports.app
admin.provedor.app
crispysoulvoltaire.order.pulp.eu
puny.app
staging.rainfall.one
rapidpre.app
beta.trax.res.app
auth.revolushot.com
roomtree.app
root-ed.in
ruderclub-speck-weg.de
sis-sicherheit.com
sketchtostitch.in
solutionsconsultants.com.au
squareapps.app
estoque.starnavbr.com.br
steadyplanning.com
drpool.straightbit.com
www.studiomango.net
suddenpeak.biz
sunrisesachi-clinic.com
talkbeat.org
tekprojekt.com
thewronghand.com
app.tnnl.co.uk
trafoo.ch
u10k.xyz
register.ubii.com
www.ui-academy.com
vhpt.org
testh.virtualseat.live
vocogno.com
wattwitness.com
withdraws.co
yallagarage.com