Open
Cached
·
1h ago
77/100
SECURITY SCORE
Certificate Information
Subject
CN=daniial.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 26, 2025
Valid Until
February 24, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:50:35:59:FF:E3:08:FE:1A:BB:A1:25:A7:13:9B:98:BB:18:66:EB:2C:0C:20:D3:48:56:28:9B:AA:13:FE:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mallorca.ardent-training.com
docs.abracadalo.com
www.accesnovum.app
agilebm.com.au
allonesun.org
www.altopadraoimobiliaria.com.br
developer.docs.alumio.com
asialink.lk
beeride.eu
bqbl.futbol
brightertomorrow.com.au
butikasistan.com
carseekeu.com
chiroinraro.com
chouchousoft.com
gudbud.co.in
staging.collegelistpro.com
ops-staging.collla.com
www.too-oilandgas.com.kz
w.sillas.comounexperto.com
archive.covidredandblue.com
tracking.curtisfraser.com
daniial.com
app.darrochmedical.com
app.devbox2box.es
developerchiragjuneja.blog
discoverlumora.com
dreamsatsea.com
portal.dynamu.co
educrope.edu.np
admin.enjizha.com
tech.enjizha.com
logos.ept911.com
www.eugarcom.com.br
repuestos.fain.es
app.faxguardian.com
felicityconnect.com
keyboardv2-admin.figmentresearch.com
www.fire-edit.com
accounts.flywheel.autos
gearless-solutions.com
usuarios.gestionayudas.es
dashboard.getorda.com
gungo.dev
hllwrd.dev
indusex.com
inspectordetector.com.au
layer1.janction.ai
www.joelogs.com
bgreview.joll05.dev
ebay.kaguraya.fun
www.kidskops.com
auth.kkomaweb.com
utnogales.lapieza.io
dev.estates.leasera.com
liebowitz.me
app.ligosports.com
www.lokationagent.com
bahakel.madhive.com
mayinhadong.com
www.mohyaghoub.com
moniruzzamanrony.dev
morsenode.com
mszpila.pl
app.mymovesmatterapi.com
accounts-test.myplayer.io
noride.net
odeacura.com.br
rateboard.onehypernet.dev
unifcvhomolog.orchestra4edu.com
go.staging.paybird.app
pdc-interiors.com
pooptune.com
www.quantummep.com
ryandoe.com
ryanheadley.net
admin.shreelakshmicabs.com
www.siingenieria.com
www.skycthr.com
slatestack.io
snapcaster.net
www.sonnos.com.au
www.sonrisatattoo.com
www.stephanietuerk.net
storylikemine.com
www.sunnydayscoffee.com
sgbal2023.swingtoplaces.com
bryan.tangleapps.com
devplay.taptapwin.co
web.thedrobe.com
hallinta.tolapp.fi
umrechner.io
members.vacationsforyou.com
villa-onyra.com
violinstringprices.com
test.visualtourbuilder.com
dev1.wattlogic.com
matsreferral.xeoscript.com
xp-eng.com
nossagente.yesmkt.net
Other domains in certificate