Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=olivia.enercred.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 15, 2026
Valid Until
April 15, 2026
87 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
99:83:A8:6C:E7:E8:EA:AF:86:CA:AD:A3:BC:2B:5D:FC:40:EC:B6:28:40:18:0D:81:8D:03:ED:0E:DA:3A:43:22
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
mobile.daypepper.com
admin.4chakka.in
www.dev.act-map.com
www.agronome.red
www.allergichecken.se
go.allinahealth.org
www.analfabeeld.nl
www.angelseron.com
anwenai.com
ariya.io
static.banjobenclark.com
bazaraki.app
boomgranate.com
bosqueencantadopediatria.com.br
broeckerbaum.com
preflight.carity.dk
cel.ink
beta.cittyo.com
tv.coibd.me
coinmasterfreecoins.com
dev.coinst.io
colaborar.io
niteshmandal1.com.np
www.dannyrosen.net
decentia.co
deepbluemedia.us
desertdungeons.com
lp-gen.digitorm.com
domotica-peru.com
www.drafting.gg
swipe.duaneleong.com
eatfootball.net
olivia.enercred.com.br
erez-dayan.com
examweb-dev.com
follow-the-train.com
hello.foxar.fr
admin.gestureminds.com
gokyolabs.com
gruhakalpahousingsociety.in
happybox.buzz
www.harshit-jyoti.in
hoteldenta.com
inspectkit.xyz
dev.invisement.com
www.ipsenfoptrials.com
www.jasoncrandall.info
home.jogo-app.com
laisuatkep.net
www.lookatyou.com
benih.lumbungrempah.com
marcusphillipswatson.com
www.mazuryatl.com
meropoolservices.com
care.merustaging.com
morfocus.com
muontelescope.com
myhypewire.com
mytrex.co
old.omichi-naruto.com
www.opicup.com
link.otherdigital.co
dev.advice.palledad.com
www.pete4.us
hub.pilgrims-rest.com
www.plusflow.me
prophantasiatrainer.com
publicalert.us
publiferocks.com
www.raykoeller.de
www.redarrowinc.com
d4c.remodela.jp
retroc.fr
www.social.robertolegorreta.com
www.roofingprojectmanager.com
balcao.rvpedidos.com.br
savannahmartinez.com
secureai.one
servekrishna.info
shad.pro
shrewdsharks.io
verify.shuttersort.io
smartchartsnxt.com
snakelings.com
www.stangeland.dev
mmto.streamsocial.gg
www.streamtalks.es
swichdesign.com
tabberry.com
app.thepeakadventure.co.uk
thewebplatformpodcast.com
tokyo-2020-teleportation.com
tri-tech.it
umfapp.com
www.unglobe.it
unmeet.app
conf.vuejs.de
www.warriorathleticscamps.com
link.ctf.web.tr
xin-squared.com
Other domains in certificate