Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=staging4932.tasquet.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026
46 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E3:68:5C:85:04:A1:D8:9C:67:43:17:6B:38:EA:B4:B3:4E:FB:BA:AA:9B:AB:7C:0F:19:95:86:C7:58:B4:81:55
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mantraengenharia.com.br
dev.link.1timesports.com
www.606cloud.com
acemyx.com
aessystem.com
alfaharmony.com
smvp.ama-shock.net
www.annelids.io
artecstudio.us
mannerenrollment.auxswot.com
bfun.app
www.boonmee-recycle.cc
www.bouvardia.salon
bravosix.io
www.cameronlowegolf.com
www.casval.trade
www.clariceejoao.com
www.cm-3.jp
services-dev.coinomi.net
www.hongosbaires.com.uy
compostforthehumanmind.com
cam-pos-dev.cuasarly.com
distancelearnings.in
dmitryourkevich.space
www.electcorrect.com
www.emix.in
fendlife.com
www.fitnow.health
fuzzy-creations.co.uk
beta.getitout.io
sms.gitstel.com
gspco.net
www.guttracker.com
v2admin.heartlinehk.com
app.heylo.us
www.impulsomkt.com
jkoettgen.com
www.jonathan-wilkinson.com
a.jrtv.jo
sampler.kirinsan.org
service.kumunua.kr
auth.limber.work
www.lintapipes.com
navi.loogia.tech
www.macaobackgammon.com
mahatvapoorn.com
majales.tv
mayatechnology.co.uk
firebasetemplate.michaelwcrawford.com
www.mindyushu.com
www.minimal.cards
myhappypets.co.uk
www.newvrajsign.com
www.ourbonfire.com
www.prestigeplus.pcalc.net
penaltyboxiii.com
perkin.info
pmanagement.cl
auth.poz1.pl
clube.proshooters.app
psifernandamartins.com.br
quinoacoin.cc
www.recoverwith.us
reeliva.com
ngaji.rifkifauzi.id
linkscape.riskycase.in
rival-basketball.jp
register.test.roklen.cz
myspot.rorbible.plus
www.safetail.pet
www.statcheck.samsite.io
live.scrbrd.com
lifely-app.sheep-apps.com
links.beta.shwdwn.io
wellbeing.solsten.io
event.sonarworks.com
www.sparestwowheeler.com
mobalpa-sfg.speakylink.com
splendo-eu.portal.splendo.health
steinmetz-reuter.de
stemnova.education
www.sushisagues.com
symmetry.la
tappa-pro.tappaservice.com
tardigradum.xyz
staging4932.tasquet.app
techorbit.one
dlink.thelocalstreet.com
x.tmos.es
stg.admin.tokei.day
networkblocker.ubi.jp
jcpm.captive.vagalumewifi.com.br
varahibuilder.in
www.vbresults.com
scanner.volu.be
wasmerize.com
wildtrip.ro
xscientist.in
bbuy.zajno.com
zubairmd.com
Other domains in certificate