77/100 SECURITY SCORE

Certificate Information

Subject
CN=nefropedia.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026 85 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:DE:B0:E1:83:37:69:74:51:23:21:F3:1E:25:1D:3E:AF:9C:D8:F9:9F:A0:DF:4F:0E:58:B4:4F:DF:CF:70:4D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
mijn.appjection.nl

Other domains in certificate

2021.cusec.net
al-hinka.com
aldebaran.si
draft.almassira.org
cdn-wa.alpesdata.app
www.ancosenergy.ro
dashboard.apporta.eu
www.atomiclanguage.co
studies.awakenapps.com
baitisraeli.com
app.bayparts.site
www.boituvastone.com.br
boskemper.nl
byjsolutions.tech
calculatorpro.app
auth.cclip.app
chaieb.tn
intern.clarityapp.in
stratus-sample.cloudburststudio.com
lekarz.telemedycyna.cmryska.pl
api.quantic.co.in
prod-specs.goautomate.com.my
ops.avis.com.pt
connectcovo.com
retail.crashstickers.com
dalalstreetcalculators.com
danielebaronio.com
east-fields.co.jp
ops.echelon.xyz
dev.ehcastellertaldea.eus
englisheasygoing.pl
app.rogueland.eventup.ro
static.ezeh.uk
www.flavigny-sur-ozerain.fr
authenticate.flowhk.app
gdl9.foodle.su gdqy.foodle.su
www.forager.dk
admin-api-testing.getcubo.com
l.goalbud.org
dev.gomo.world
stglink.goout.fun
www.hairbytina.es
eap.healthbj-uk.org
www.idproductions.co.za
ignacioaraya.cl
ilmedeenacademy.com
partners.infusionsoft.com
customer.izacapp.it
app.jakipit.pl
jardindejany.net
www.jaspil.com
justorder.jp
karandeepfilms.co.uk
auth.dev.kinobox.cz
ipp-pretest.klarway.com
u.knowre.com
www.koreacoin.site
www.landstartransport.com.au
lazeezdesserts.com
home.locogames.live
app.maxima.lv
link.meetnow.in
mm-db.com
nefropedia.com
nighty.today
www.nulabs.it
fdb.p-logs.com
app.nippon.photofied.tech
kitdigital.ploou.com
www.pointpost.app
principaldayalsingh.com www.principaldayalsingh.com
promgee.com
app.rafbuddy.co.za
www.resthour.fr
ricardoamoretti.com.br
www.rogersteinbakk.no
rosibec.org
www.rs3.me
console-int.salesfloor.net
www.samharmonix.com
www.sandefjordproteselaboratorium.no
web.savin.app
seasonals.uk
www.shiningbuilt.com
www.streamcompanion.app
service.surgicalmicroscopes.com
www.tallerferromecanico.es
www.tbst.app
milimo.thinkzambia.org
clinicasavios.timp.io
stagingreports.trinitynetwork.co.nz
v3webinar.com
vanhassel.us www.vanhassel.us
link.vapetool.app
portixol-orders.waiterpro.com
www.zfg.lv