Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=casicasa.es
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 16, 2025
Valid Until
January 14, 2026 62 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:6F:51:24:A6:E7:77:9F:0C:66:FB:51:43:2D:25:7E:F5:E3:1C:4E:8B:14:7C:C8:E4:D5:70:F8:7E:38:33:89
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
mithras.dev

Other domains in certificate

alyra.ltd
www.angels-list.org
artificiallly.com
console.assisthub.io
atxkungfu.com
aulla.top
bhit.com.mx
bict.ca
bombastic-muellheim.de
www.bringhome.me
app.analytics.cambri.ai
www.cargifts.by
casicasa.es
www.catholicretreats.net
washkaro.co.in
console.carelogue.co.kr
www.codefusionbit.com
app.collabrei.com
www.commercedna.com
cutestdaily.com
damhypnose.com
ddtc.pl www.ddtc.pl
dolaczdothecircle.pl www.dolaczdothecircle.pl
www.intzetta.ema.lat
i.esgl.pro
www.eventezy.in
f7e.dev
notion.fadhalshulhan.com
trainiacmicro.falkor.io
app.faq.camp
www.foujdar.dev
www.future.plus
www.gdgsrilanka.org
goseecity.com
hetacode.pl
www.intosoundhealing.com
www.isaiahodhner.io
go.itchihi.work
journey-of-love-ihar-and-alla.by
image-encryptor.jusemon.com
www.justonecard.pl
kokud.dev
chaekkeullim.kro.kr
blog.liiao.cc
liv.liidutpl.ec
inventario.luismarroquin.com
www.maracoffee.co
merchav.photos
www.mestarikai.fi
mikeyriver.com
www.milestoneconsulting.tech
mobitaz.dev
mor-pheus.info
e.more.vg
mostawkwardgift.com
filme.informacion.my.id
mycircle.pl
namah.dev
pastebin.njrafi.info
www.nofilterstream.com
business.octoziner.com
ostryx.com
www.playhenry.net
www.protrucktrader.com
user.puritybrowser.com
ceramicad.quetzaltech.net
quintapro.eu
kallakurichi.rainbowsdroptaxi.com
rakesh.dev
bazur.raxys.app
roboticimaging.ai
rockinghorse.me
app.skatetake.com
softwaresolutions-llc.com
dev.app.sponsorights.com
sportshack.io
www.spsradaur.org
www.stannesen.com
slang.steler.nl
www.tarot-yourself.com
accelerate.trainiapp.io
www.translocationrisk.org
thepub.tresastronautas.com
tsession.net
apps-preview3.una-community.com
doyma2021.virtual-brand.space
www.virtualcatmachines.com
paint.vteam.com
welshwellbeing.co.uk
wijin-academy.tech
willdeuschle.com
wordrace-links.wini.games
yalcinozer.com
yallasolutions.com
cms.staff.young.capital
zacmel.dev
zebrablau.com