Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=www.blueocean-ls.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
March 04, 2026
Valid Until
June 02, 2026
36 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AD:6E:83:02:2E:B9:C8:58:50:74:AD:8E:A0:B9:D9:50:F9:B6:22:37:55:A6:3E:63:8E:12:11:EC:D7:C8:F4:1F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
masunoapp.com
accidentconnect.com
www.ache.ar
neo.ai-marketer.xyz
client.alacarte.restaurant
auth.altalbabi.com
www.amandastherapeutics.com
amplifyinghervoice.com
www.atharva.one
babfree.tv
nihongo.badiale.dev
beershira.org.il
web.bibliotecadosclassicos.com.br
coe.bicrec.in
2005.bloggi.es
www.blueocean-ls.com
www.cecapcb.com
plasticpunk.cococode.co
panda.ld.comicsans.games
convertify.ch
craftbeervaldivia.cl
test.dezyit.com
research.diamondeducationinstitute.org
components.dimitargegov.site
hadir.dpmptsp-surabaya.my.id
businessriver.eia.ie
esmatullah.com
news.ethiquill.com
soporte.exavant.com
bryansk.fit-n-beauty.com
freespincard.com
premionestle.getbots.com.br
dashboard.getincredibles.com
www.goose-arch.ru
www.growplastic.pk
happywork.dk
hilearncrm.com
www.holdrightgames.com
ictuloanbt.id.vn
quiz.ingenierobinario.com
it2000soict133.id.vn
www.jivegraphics.com
jonathan-kent.com
jualbronjong.online
www.k1key.com.au
firebase.kmcnellis.com
www.lacharizhomes.com
www.learnchinese300.org
help.linkglobal.org
lovaue.com
lovetouch.pl
auth.madronameditation.com
translationviewer.makeminespicy.com
chesterschorley.megapos.store
mightyswellspirited.com
api.milodygames.com
bookings.mobieworld.ca
mudassarrauf.com
conference.muncommand.com
signupindia.mymotheragency.com
naachii.studio
el-sazon.orbitgh.com
app.pfadwind.de
play2win.com.br
lines.popoko.live
prayandfast.io
radar-publico.app.br
realestates.cl
www.reeducarapsique.com.br
start.repure.life
www.restauranteitumbiara.com.br
rigot.dev
www.rux-gmbh.de
santhugao.com
saurav.work
www.seidquest.com
sh-rturl.site
sidewinderva.com
documentation.stoiccapital.com.sg
app.stonestepper.com
storytimeadventurers.com
school.stride.studio
www.study-hub.co.uk
www.suvoksystem.com
synergystudio.io
www.thenjiwetrading.com
platform.thesocialhandshake.com
promotion.thirdworks.co.kr
tk69.store
my.trnr.ai
trongtx2416627.id.vn
ushainternational.co
uxlagi.com
verdantevolution.com
viyallabs.com
admin-test.voltie.us
www.warriorsforempowerment.org
wtm.sa
www.x-report.com.br
ximasalananh.id.vn
Other domains in certificate