77/100 SECURITY SCORE

Certificate Information

Subject
CN=brandino.studio
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 02, 2025
Valid Until
December 31, 2025 43 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:EB:F4:21:35:3A:EF:7A:0B:62:F8:B0:FC:A4:51:36:27:63:DC:FD:3C:48:AE:C3:40:E7:7C:E3:8F:FA:AB:DD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
millionsolutions.dev

Other domains in certificate

440development.com
www.amelhormaquininha.com.br
srb-eadvice.anytechgh.app srb-portfolio-manager.anytechgh.app srb-stationery-stock.anytechgh.app
aogamesstudio.com
www.spelling-bee-mlb.baseball-connections.com
s.bbok.me
live.beecome2021.pl
www.bewithyoupet.com
oauth.billees.com
brandino.studio
cadenazero.com
chesecuritysolution.com
christopherogdenfilms.com
agenda.clinicaeverest.cl
www.codeflowsolutions.com.br
www.codeisgame.com
features.app.vimes.com.vn
creditojaguar.com
www.daya.nl
dddeurope.com
derek.kim
api.qa.dynamicloyalty.ai
edp.elysium.tech elysium.tech www.elysium.tech
enterprisecarbon.com
ersanfistik.com
tech.fanai.io
g-elite-g.com
cuadrilla.gonzaloretamal.cl
integrated.hub9.io
illmagination.com
4q5ww.podb.incentable.com
ioffers.inlabdigital.es
dwi-fatur.itsyourdayofficial.com
qa-digitaltwin.itxi.aero
www.jafooby.com
simpledoc.jeripeier.ch
joagames.io
app.joinmymo.com
julebobler.no
app.karate-notes.com
development-digitalchange-webapp.knolskape.io
kumarudyog.com www.kumarudyog.com
labs.livotov.eu
localiq.app
lumierepay.com
momo.net
scout.mural365.com
web.mydomus.co
app.mysimplist.com
firebase.palasthotel.de
app.paperdapp.com
pdfanonymizer.com www.pdfanonymizer.com
peklakengineering.com
www.pirkkalankylatalkkari.fi
student.practicespaceapp.com
pranavpandey.dev
precisioninmotionpt.com
www.proudd.es
qha1.com
radiohqapp.com
www.rdkr.dev
qr-emmaus.redacks.com
api.remodzy.com
connect-ng-claims.rxoconnectint.rxo.com
www.sasipolypacksivakasi.com
www.scrollbar.dk
hr-admin-stg.selfdoc.jp
serdalseven.com
shizen.vc
sis-hansenord.com www.sis-hansenord.com
sis-hansenord.de www.sis-hansenord.de
eahcjo6jfxt8ppcxuzyf.smartimob.io
line.soft.events
softmyze.com
softwoodtextiles.com
starcallerbsub.com
stempelkort.no
svarart.com www.svarart.com
surprise2022.thijsgeurts.nl
fbqa.toh.pe
carnaval.tomknaepkens.be
forms.tquk.org
tsmart.store
links.prod.myid-idp.unifiedpost.com
vietquocsport.com
www.winspurt.com
wojs-przeprowadzki.pl
days.wvlabs.ai
app.zameen.com
alpha.gravitate.zarinloosli.com