Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=offline.parcs.flashparking.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 30, 2025
Valid Until
December 29, 2025
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E9:B2:89:7A:C3:E9:5F:2C:A1:AE:49:0E:38:97:27:8C:64:4E:C6:38:0B:4C:B9:AA:1E:E2:DB:C9:29:1D:D4:AB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mettre.com.br
1519.fun
app.adarga.org
aellis-music.com
admin.amer.anyware.software
auscrosa.asn.au
bcreations.in
apiv2.beerpassclub.com.br
beta.bepos.io
kaltech.blixify.co
botoelchupo.com
remotes.bou.co
boxbee.io
brandbounce.io
www.briefclass.com
www.cant-wait-to-play.com
centralhillslawnservices.com
ultracoahuila2022.dashport.run
dinesynk.com
driprowpro.com
links-dev.enakpedia.com
offline.parcs.flashparking.com
www.fouone.com
marketing-suite.fullstakk.no
games-lib.net
getuyaro.com
www.giross.com.br
b2b-staging.givve.com
glcarwash.com
grover-ltd.ru
hanendaprinting.com
www.harano.com.br
www.pathfinding-visualizer.harshjobanputra.com
venue.dashboard.dev.hellohub.com
courses.ilutor.com
www.imagemate-c.com
marketplace-stge.infusiontest.com
partners-stge.infusiontest.com
www.inmobiliariaintegral.com
viewer-testing.input4you.be
www.inviter.work
jcaldwell.io
kanbook.us
review-agent.kodex-ai.com
www.ksp-kalajoki.fi
event.kyushu-catan.com
mondragon.lapieza.io
www.lightlymodded.com
link-friend.page
vvgp.lsceco.cloud
results.maprun.net
bs-runner.marriedgames.com.br
metabytz.com
mobappdev.eu
auth.mobibootcamp.com
yoshino.mtbpark.info
dev.mtnpy.id
www.admin.myfirstquran.com
wmlogin.naftecbr.com
naguiblaw.com
doc.sima.name.np
nebo-lit.com
checkout.neoufitness.com
mta-sts.non.bz
www.ntokastudios.com
camri.ooca.dev
doc.oroinc.com
auth.app.pilot-security.com
potalathanka.com
pt.pttepworld.com
www.redeslab.io
rhinodevs.com
riark.in
www.schoolscope.org
www.senocakhersch.com
fuserikyu.shinzo.dev
care-dev.sidekickhealth.com
www.sitetr.ee
smileconceptsdentalcare.com
www.streamlookout.com
p1.stx.world
sviluppiamotutto.com
taniguchi-paint.jp
zk.tarydium.com
techytitan.com
thankahub.com
tilosazai.org
sat.trato.com.br
eordering.treesoft.io
trinitylabs.com.br
glt.turtelinc.com
polecam.tutarnobrzeg.pl
www.typhoon.cash
find-my-friends.uniq.by
playground-omega.upflowy.com
usehashmap.com
violetpharmacy.com
www.wiz365.io
join.youper.ai
app.zetaone.com.br
Other domains in certificate