Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=surfhire.au
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 27, 2025
Valid Until
January 25, 2026
60 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AE:05:3E:22:DE:3C:8F:40:C5:9B:C8:65:C4:04:42:04:8E:40:75:C6:67:FE:2A:29:DA:4D:AC:DD:EA:0C:92:93
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
modastimay.com.ve
acb-calculator.ca
links-iturrospe.acty.com
www.adityajoshi.online
www.aaam2.algoramming.com
alle3.com.br
dev.account.ampup.io
aquasm.com
arkajayateknik.com
assarkarco.in
landing-podcast.audi-on.com
original.austin-dsouza.com
autowaxsfl.com
bcalc.bashtosports.com
beopen.app
www.bytore.com
www.camdencountryclub.com
capital-ai.eu
www.checked4work.co.uk
chepito.chepex.com
cmcms.multiconnect.com.hk
connectwithcirca-verify.com
www.creativesminds.com
pond.cta-tech.app
dev.dancesportsoftware.com
app-dev.deccopyrpot.be
dr-nk-bhat-skill-lab-test-app.pro
instituciones.eclinic.com.co
eglise-boissiere.fr
www.ferreiragama.com
www.training.fitcuffs.com
a0ir.foodle.su
fun-powered.com
funneled.app
www.gkpsolutions.net
goopar.jp
granfire.shop
greenpixels.se
dvision2.indiandevelopers.org
mta-sts.insuractio.com
jobcht.me
joshiexclusive.in
kint.rocks
knottext.net
laloshop.in
littleops.io
livionaef.ch
www.malik.design
tarots.markapp.xyz
mccracken.work
ar.memtell.com
domplus-dashboards.metriq.io
mindmissionquiz.in
minelists.com
mipsicologa.online
write.mosil.studio
www.muttleysdoggydaycare.com
mypadhai.in
mysticswordstudios.ca
election2022.newsdigest.jp
www.nickskelton.me
defianz.nishkal.in
predixon-staging.noisegrasp.com
www.notakshayp.in
olivepkg.com
resume.omargallo.com
dev.auth.payr.org.in
hypercasual.orso.jp
prod.partyrescue.ca
www.pizzamaniafuengirola.es
www.ppt-productions.com
fleet.promasidorgh.com
i.rallyreader.com
www.roomzee.in
brplink.rootcode.software
rpindustrialproducts.in
rzume.co
sarvaswam.com
www.sarvaswam.com
msp.serviceo.me
www.shireystatsandstandings.com
sinapsislatam.org
app.sitelog.si
sophiekeller.info
www.stackbeans.com
new-year-reward.steaker.com
sunside.games
supaship.io
surfhire.au
talentbox.in
www.thejobsjungle.com
app.crs.demo.ticketbuddy.in
login.topperscorner.com
app.vascularlines.com
www.vibyapp.com
yuko.waynua.com
app.wenwin.com
www.wikiveg.com.br
www.yabadoo.tv
zymo.app
Other domains in certificate