Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=haiphong.aurafitness.club
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 02, 2026
Valid Until
July 31, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
91:FF:A9:98:82:0C:3E:5B:C6:7D:F5:50:92:D5:EE:3C:C8:CB:8D:23:7C:6B:CD:E3:F7:99:97:BD:8C:88:20:0E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
makemp4.com

Other domains in certificate

candidatecollective.3diq.com
www.4d3.space
sales.56195599.com
8ironanalytics.com
www.aamesbell.com
agrocontrolapp.com
b-erifica.alenasoft.com
noel-2025.alexis-soto.com
alvaroyclaudia.es
www.andrestoledotech.com
appvite.us
archexplained.com
beta.aspaigrefeuille.com
haiphong.aurafitness.club
www.avantscore.com.ar
healthtracker.baldsteve.com
bapamoa.com
www.beaconenglishacademy.com
bitflownova.com
brijwasicarnival.in
dev.bviralhub.com
client.bymenta.com
www.codedady.com
www.copyrightagent.no
rioacai-orders.crispnow.com
portal.currentculturemedia.com
cutoff.foundation
dalexeg.com
www.divinelydesigning.com
www.dylanriffle.com
dzrautorepair.co.uk
xci2gsej.easyapp.co
auth-firebase.vipnetplay.eitvcloud.com
eladyosef.com
englishenlinea.com
files.enotice.io
fmfeeds.eventfull-us.com
fabiennelind.com
boeken.fairwaygolftravel.nl
findmylocal.online
www.firstagro.com
www.fluxphysics.com
vibe.formset.studio
fossboy.com
foundryai.so
fujin-goido.fujin-nara.com
goalver.com
goimmersio.com
google-calendar-hours-plus.com
www.gpsresearchlibrary.com
gravartela.com
gurgaon-brokers.com
www.halfwitgames.com
healthcue.ca
hiprt.com
hydestcorp.com
infinitesand.com www.infinitesand.com
www.jacobandmary2022.com
jsrcoolingcare.in
www.juditverpleegt.nl
kliffort.by
www.konwerternia.pl
lentemaniapty.shop
lexicon-app.co.uk
lilynacht.com
refuel.lunettelabs.com
lupomontero.com
www.moraindu.shop
mrvtrayi.org
msshoecompany.fi
mykettlebellworkout.com
notifhi.com
oneletter.xyz
www.oticaslillo.com.br
panchan.id.vn
www.prestigemotions.com
www.pulsepets.io
quangminhbui.id.vn
quonow.com
wk6hed-beta.rayark-pass.net
www.refamp.ne
www.richardmezadri.com.br
www.sanskardhanigarba.in
sharjahtodubaicarlifts.com
shazadaslamtech.site
sohozhub.com
sotospace.com
thelogiclens.org
trueutils.com
tubainternational.in
uwucoin1.com
privacy.velointerest.com
homes.viewfraservalleyhomes.ca
www.vigor-witaminy.com.pl
vocalreplica.com
westwildcreation.com
content.xhalal.app
academy.yourgutmap.co.uk