Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.mojopinata.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 05, 2025
Valid Until
February 03, 2026
73 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:8E:FE:60:9C:44:98:4F:A9:93:07:1E:57:37:42:4E:02:B7:EE:F8:86:F2:98:14:93:BD:71:E1:FE:80:D8:18
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mlsconfidence.com
11521639.peerly.app
verbly.3digit.dev
abanoubessam.com
www.abibuilderstheni.in
accertive.com
www.accordle.no
adresingenk.com
afiliadosmarket.com
alfongj.es
www.allmedi-socialmedia.de
ariprojects.com
arkrealty.com.au
askmedicalgroup.com
form.avazoo.com
freelancers.bou.co
boxento.app
staging2.churchroomsdev.com
planning.cjftir.fr
www.dostesting.co.ke
codeparti.com
merlon.com.tr
core-egy.com
www.cssart.club
cuanto.com
cutwisepuzzle.com
rest.dimorder.com
link.dpsairo.com
bca.iem.edu.in
www.elitepackaging.in
faceblur.com
app-stage.firmapro.cl
forgeboundworlds.com
logowanie.gratka.pl
www.greenlinetradegroup.com
mg.haii.io
www.hbomagic.com
concept-eye-clinic.booking.hearlink.co.uk
www.hhrp.in
hillcountrycapital.com
www.hiltsdpc.com
himalayatraders.com
hojje.app
hyperflowgraphs.com
iamvery.ooo
card.imba.dev
www.app.imperiumsoft.com
www.indefinible.live
isitsmallpoxeradicationday.com
www.josephstechnology.com
www.jurassicrevived.com
encuestaclientes.k-9apps.com
admin.lambaba.com
laposadadefrancisca.com
www.lumenstechnologies.com
benher.madhive.com
mclegales.com
coopest.megataxi.com
www.memoorize.com
www.mojopinata.com
monstermaker.xyz
web.moxie.one
business.my-car-service.org
myeasydev.be
dashboard.mylekha.net
mypilani.com
www.noodlestreetlabs.com
app.nuclea.id
www.otutama.com
pawawomen.org
billing.pixis.ai
plasticoshermann.com
www.c2s.prasoon.me
vectorcag.processshop.com
produp.no
www.ptaceksfamilymarket.com
order.pure.co.uk
demo.rabot.us
app.readtrack.net
www.richardperkins.net
sadovsky.org
www.satplanner.com
questions.staging.screencastify.com
uwblueprint-scv2-frontend.sherryli.me
shwetaatourism.com
parent.devz.skool.sg
iot.softech.cloud
stampitas.com
stats.band
steuerwizz.com
sudharsan.me
summitbag.com
www.surveillancedashboard.com
thetim.tech
www.thilaksanadroptaxi.com
www.timeto.work
tofycafe.com
triviachampion.com
www.ukdealdepot.com
zettaflo.com
Other domains in certificate