Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=faucet.orai.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 11, 2026
Valid Until
August 09, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9B:D8:D1:5E:36:E0:94:3E:D4:68:59:A3:78:04:B3:D4:9D:EA:9B:28:A2:1B:4F:BA:41:51:A8:F9:BE:26:7C:AC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
marcellajopirillo.com
www.3bbxbeam.com
www.ahlantourism.com
aiximerada.com
aktergrocery.shop
t.almeraim.com
app.anchorwallet.ca
www.anime.cards
auth.clubroom.appare45.com
www.appmazeme.com
biometria-maracana.bepass.com.br
www.bhojanapp.in
test.bortronx.com
www.brighterbaybuilders.com
www.cantarranas.es
purchase.catkodagu.com
www.chinventory.com
chiflas.clau.io
code-now.io
aripochi.codeforyokosuka.org
contadoralejandrososa.com
milk.cyberjudah.io
devdev-tools.com
divyeshtailor.com
join.doubleacegolf.com
www.encf.do
dashboard.ensodata.com
enwen.surf
eaf.fesios.com
dev.finishlineresultscoaching.com
link.fruitsfamily.com
fotos3x4.ftapps.com
gasty.site
geminimediainc.com
gidakontrol.com
www.gniex.com
mindtick.goact.com.au
vendor.heydoor.com.au
www.hnzkstudio.com
indewave.com
app.invintum.com
iriskingston.com
www.isebbe.com
www.foodcourt.isthara.com
italineaplanejados.ia.br
devices.beta.janitza.cloud
www.jcscrackers.in
www.karlkriger.com
kiruthayafoundation.org
krokis.net
luova-gifting.com
get.manifestfinancial.com
mdbasit.me
k2taj.megapos.store
mindfox.com.br
mizutechwater.com
www.moritebirdwatching.com
www.mrdiamond.com.tw
mundo-riego.com.ar
nextgenerasidata.com
www.nicecabbage.com
dashboard.noknokgroceries.com
faucet.orai.io
oscarsalguero.com
www.pilotincommand.llc
survey.polytricks.in
printbeanafrica.com
qiangshi.lol
www.qiangshi.lol
quarks-studio.com
renemccaine.com
www.app.rentalios.com
resplugs.co.za
qa.mansfield.rgn.io
www.ryai.org
ryumuraki.com
safsmi.us
pheonixofoceans.sagisu.com
www.satyambits.com
dev.sealog.co.uk
silliconemind.ma
smaranza.me
www.sotaplus.net
sowota.co
www.spencehood.com
www.splingo.net
simulateur.stairling.com
stefanmwierda.com
stuartgiles.com
app.stunlo.com
canvas.surfboard.se
paintings.suryaran.com
teched.solutions
thecrochetclass.com
toca.jp
www.transe-inc.com
dlink.truemoney.com.vn
www.www-japan.com
zbd.social
www.zytuny.com
Other domains in certificate