Open
Cached
·
just now
80/100
SECURITY SCORE
Certificate Information
Subject
CN=admin.cat4school.de
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 27, 2025
Valid Until
February 25, 2026
55 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6D:5C:64:93:F7:69:19:B0:E9:D2:F6:71:68:A8:5E:FB:A2:8D:14:2E:4C:9A:33:91:6D:1E:10:8E:05:D9:4E:FE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Configured
(Restricts certificate issuance)
Current Issuer
Authorized
(Matches CAA policy)
Authorized CAs
Wildcard CAs
Recommendations
- • Consider using critical flag (flags=128) for stricter CAA enforcement
- • You have authorized 6 CAs - consider limiting to only the CAs you actively use
- • Consider adding 'iodef' records to receive notifications about unauthorized certificate issuance attempts
Subject Alternative Names
100 domains
menuvayu.com
dynamiclinks.1independent.app
www.acarsansiparis.com
www.adamhpan.com
www.allnewjobs.ca
www.andrewnguyen.io
www.beach-referee.ch
app.behaviorprisecollege.ca
beplay.com.br
www.blabla-bahn.de
portal.blueirislabs.com
sevis.cashex.app
admin.cat4school.de
wms.demo.cedvalley.com
www.etika.co.id
codewithferrer.dev
www.corner.dev
crudecatz.com
cryptoshops.co.nz
ezsplit.d2mstudio.com
www.dacecia.com
www.datatrap.com
test.daytonchen.com
dehairasilva.com
devfestka.de
dlkship.com
dev.dm-list.ds-carlife.jp
egowowholesale.co.uk
fantamaniaci.it
www.fellowshiphome.com
fitifyapps.com
www.fwd.wiki
www.fxashbell.com
web.dev.geostry.com
www.giftnft.app
www.happyphpdev.com
www.infosoftusa.com
kdmservices.in
staging.kidsworldrecords.com
lessonkeeper.app
www.lexcialservices.in
www.maderourbanostudios.com.ar
mafra.com.co
www.matt-hayes.com
megatau.party
clientes.miclinicapp.com
www.mikeynissenbaum.com
tribial.milumino.app
www.moniruzzamanrony.dev
dl.naoo.com
okhaldhunga.nepaldrivinglicense.site
signon.nolimitstrackdays.com
ntinfo.kr
nuim.de
ogul.net
olbacashloan.com
cashkaka.pettiboy.com
pitagorasai.com
www.pixoditor.com
user.pktbazaar.com
admin.app.platforma.one
playguessme.com
qaml.net
admin.rakuco.app
link.store.ramotion.com
www.ranjitsreenivas.com
www.rashidwassan.com
restaurantecanton.com
staging.shriviswadwarakaa.com
www.spiritofthecrow.com
documents.spried.com
mobile-dev.stoick.io
streamlineappbuilders.com
auth.styleof.com
link.staging.super1foods.com
tasktoown.com
tasting.coffee
www.testrs.app
thirdriver.io
www.thomaslauder.com
thylsky.dev
todeplantao.com.br
toprecruit.in
auth.touchtorate.com
www.tskguard.com
app.uniquemodel.com
www.urjacart.com
vaughanm.xyz
www.vickiesy.com
www.walnka.com
scan.watdrinkje.be
we-rule-test-auth.we-rule.com
women-nyc-auth.we-rule.com
www.whotechs.com
vastgoed.woningselector.nl
www.xurlabs.com
decodify.yippudo.com
fidelizacion.zencillo.com
gascommander.zencillo.com
inventario.zencillo.com
Other domains in certificate