Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=nateperkinsmakesthings.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026
53 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D3:11:30:E3:16:61:EF:6D:53:0C:9F:44:16:60:56:6F:D3:EE:6B:FB:31:11:50:AF:44:DB:DF:54:DB:D9:86:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mail.brickwise.at
abouthops.com
www.affiatamento.be
www.alexistoledo.dev
pdcatch.is.amplifiedit.com
dev.api.appjusto.com.br
tvennan.arnigu.dev
atthebeach4you.com
bharatdigital.in
tick.botit.co
milimo.chastenzm.com
firebase.lowestfare.com.hk
darceo.com
dexcalidraw.com
www.digireams.com
etudiants.diploma-audio.fr
disimoimpianti.it
djno1.cz
dopeafterdark.com
www.dynamopro.co
www.emergentbit.com
erikohlen.com
essoapps.com
www.exabox.app
referral.fibitpro.com
itdachieversaward.framez.sg
gofundrobots.org
www.gorillasports.bo
beta.graphyform.com
smartaccess.grupo-giga.tech
hms.guestporti.com
installdev.heybryan.com
www.dev.hmh-waggle-teacher.com
ibrahimsaleem.com
kakaka37.id.vn
admin.ime.bo
a9nq9.poda.incentable.com
infyni-kids.com
isaiahandgisselle.com
moving-motivators.it-p.de
jenniecounseling.com
beta.development.joinflux.com
dev.auth.kairosgame.com
pro.kayou.nc
www.keiofashioncreator.com
keithbrosch.dev
mensajerosurbanos.keocolombia.com
gestor.dev.latinad.com
api.listique.com
www.lockdownbootcamp.com
www.mangosongbook.com
manikindiantrust.com
www.mastersoft.net
portal.mgnyconsulting.com
www.sports.moraspirit.com
first-metal.mozky.dev
mpjourney.com
msellerchart.com
www.mulberryheights.com
nateperkinsmakesthings.com
s.newsshorts.in
nexvz.com
nptractor.com
members.oakmorehealth.com
auth.onote.com
www.panalfresh.com
phillydu.com
app.posterly.com
quakeproject.com
www.quantifiction.com
my.quranbook.app
www.ranasales.com
reachme.lk
www.reactish.com
www.recursivetechsol.com
cms.redfox-ws.com
refenture.com
assets.rewardsurveyusa.com
romanzey.de
streaming.romneystudios.com
scproductionsltd.com
sidehustlestack.co
myaccountdevpayments.southeastwater.co.uk
sreekids.com
www.staerkeralscorona.com
stash.technology
surakshawatersolutions.in
roma.tcontur.com
tekspikes.com
www.tenery.cc
tennisdash.com
www.text-ux.com
uclone.net
agency.umrahmarket.com
new.vinsyt.com
matherush.waldmueller.eu
wellet.fun
cabcompare.whichone.in
durhampub.whyq.com.au
zamnademy.com
Other domains in certificate