80/100 SECURITY SCORE

Certificate Information

Subject
CN=fidelidade.moub.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026 55 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:DA:AE:F7:68:8B:EB:6C:F7:85:90:70:B1:99:DF:FF:24:C0:27:A7:1E:85:66:BD:0B:81:3B:B9:7E:E5:6D:87
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Basic
script-src; object-src; base-uri; +3 more
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Improve CSP by adding more specific directives and removing 'unsafe-inline'
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
magic.foodwaretogo.com

Other domains in certificate

4-states.com
www.7vowss.com
stopovergewicht.aanvraaginformatie.nl
alegranti.com
animals.aliustaoglu.biz
ticket.mfs.dk.attraction1.ameroservices.dk
amezexpress.com
www.aoiteppanyakijapones.com
admin.appsiste.co
www.ashujainvi.com
assessoriadomovimento.com.br
applink.azadsandesh.com
www.bkaiser.ch
assetmanagement.bkbirlacollegekalyan.com
bluff.bet
www.brainilis.com
chakka.dev
chancertech.com
dl.charitable.be
cl.clatas.com
www.cumar.com.uy
www.curlstange.com
www.dannyglavan.com
payments-live.danubehome.com
driver.ddbox.com.au
app-stage.deskhunters.com
www.devintent.com
www.drtabassum.com
drtkeating.com
dtools.dtnexusapp.com
dtxdex.com
dyashin.com
biz.epesipay.com
punjabfanapp.fanisko.com
test-site-upcoming-auctions.farmgateauctions.com.au
www.fillin.app
www.flavioosh.com
links.freeya-staging.com
prime.getwifireapp.com
mindyful.gig.bio
www.grownode.com
www.healthygrocery.app
histopad.histovery.com
movements.huynguyen.ca
link.ihoroscope.app
giottoapp.imsitaly.eu
adesso-staging.interviewui.com
app.irripasture.com
www.isswarrajgopee.com
grids.its-not.tv
www.khmumtech.com
kicksurvey.com
taskdev.kime.app
kpitechservices.com
nisaba-zami.kurnugia.com
www.laurieontech.com
lsborg.littlebitpositive.com
beta.londonhydro.com
madeself.com
makoto-delicious.com
malayalihub.com
mama-rhodes.com
markalester.com
www.massiv.cc
maxmarchuk.com
meandmyfarm.com
merch.africa
www.meta-show.co
monkeeys.com
fidelidade.moub.com.br
mspromanagement.com
myguyonline.co.za
meet.nandenjin.com
auth.nearfield.cz
www.octata.com
www.optimout.com
m-dev.orbitalshift.com
personalinjurymedicalcenter.com
pickabook.app
pup-sa.com
parking.q070.nl
ramblinstories.com
dl.readwhere.com
www.rehabilitationspsychologie.at
remi-marsal.com
bytebuilder-staging.rumie.org
www.surftracker.app
surplusolutions.com
taiwanteachermike.com
portfolio.terry1213.com
share.thatch.co
thereception.co
running-order-creator.tobarrajorge.com
toftunes.com
app.tourismnft.io
www.trenerkocur.pl
u-raid.com
www.ukrainawpotrzebie.pl
speedtest.watertechstudio.com