Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=braid.health
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 05, 2025
Valid Until
January 03, 2026 42 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:CD:36:72:0D:48:74:C0:6F:BE:83:0D:D6:C7:E1:2A:FC:F8:8F:F7:CB:EC:A4:B6:9C:B6:57:7B:B2:75:79:76
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
lunatech.pl

Other domains in certificate

11521418.peerly.app
app.12happykh.com
abaksystem.pl
im.abinbevefes.app
tanks.acrostic.club
adadalmare.com
dev.driver.adionatech.com
track.advancetrackerz.com
adwind.ca
anuncia-google-ads.digital
sports.backwoodmedia.com
www.bitchbarometer.com
fila.bluve.com.br
braid.health
www.brijfalet.com
cadeonibus.com.br
www.centrostudiakropolis.it
console.chektdev.com
www.bhanu.co.in
app.market-track.com.do
share.contactsapp.com
newsletter.cornellvc.com
cregitec.com
pro-stage.daphnee.app
www.dennisvis.dev
reweigh-4.dev-ltl-xpo.com
www.draflorencialamela.com
thequantic.drtis.com.br
dteam.cloud
www.dys.fr
www.edemascore.com
apps.pcgs.edu.ph
accounts.fhsis.org
dev-cname.foxi.link
autonomos.freeme.es
demo.gagantransport.com
babel.globalrecordings.net
gorillasports.com.br
photobooth.gpmanila.com
applink.hellostocker.com
hotellimeira.cv
yeld.howsfamily.net
chandraclasses.indiandevelopers.org
indiantrace.org
j-li.co
kenteken-commentaar.nl
onboarding.knownuggets.com
web.koerbchen.app
app.development.sam.kronos-staging.net
www.leglobule3d.com
www.listaapp.net
www.manuelparra.dev
www.mdshahriar.dev
dev.mendell.meds.co
bordro.mehmetkocak.com
sstg.moovup.com
home.morgandenis.fr
admin-smarthub-dev.nexlab.tech
nexthorizontech.com
www.nomadventur.es
portal.nordictelecom.cz
norkempark.co.za
notebits.io
www.lab.omrx.in
nlfc.players-player.com
demo.pujasweb.co
api.rategame.io
rdvnui.com
app.releasezen.com
revolutiontech.net
rnishanth.com
stark.robot-valley.com
rosspatman.com
app.satelligence.com
share.schlagerplanetradio.com
www.seneca2d.com
pokemon.sickels.dev
siffjeddah.com
vtc15.simpliroute.com
slippery.fish
sohambutala.com
pennstate-altoona.sowl.to
staterapower.net
sucolab.info
sui-dapp-kit-theme-creator.app
tagalong.in
api-docs.tdax.com
thisisae.com
dashboard.timetotime.app
totalquote.io
upsc.tpnt.in
tradeharborsolution.com
www.travdar.com
app.staging.upbycellance.com
vapealicious.us
www.vechtervoor.nl
washitdms.xyz
thewritersroom.writerduet.studio
zipstudios.co