Cached · 3h ago
77/100 SECURITY SCORE

Certificate Information

Subject
CN=mondaypicks.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026 49 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:64:B4:42:17:50:14:79:D9:FF:7C:F4:AA:95:F9:2C:F6:18:DA:02:F4:62:8F:D8:4F:EB:52:30:22:3D:A2:64
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
mondaypicks.com

Other domains in certificate

woodmark.3dcloud.io
abacus-sol.com
app.agilitycoursemaster.com
staging.dashboard.altscore.ai
www.argabioso.com
botunconsulting.com
broniow.ski
labspatient-beta.chronometriq.com
codingnlifeblossom.com
hsinv.com.sa
commonthread.group
nibako.daihatsu.co.jp
datalogy.bg
payments.datespot.love
app.diamondsistemas.com.br
www.dnsrecord.how
www.doctordoggy.dog
driveproseries.com.br
turksintech.easyapp.co
www.communicate.elevationai.com
app.emporix.io
www.eqlx.io
expense-robot.ch
falkens.at
farinaandfondant.co.uk
www.filtrodescal.com
www.gainhealthnet.com
goto.goaldsport.com
www.hondenpensionkwispel.nl
staging.ineed.co.uk
mta-sts.intalite.co.uk
www.jadesignature5105.miami
www.joshbtay.com
abc.kakathink.com
kamala2024.info
auth.kikemaya.com
portal.kivacrm.com
app.kodasuite.com
www.kstkws.com
ins.kukui.com
faceid.laniakea.tv
mach-das-leben-an.com
dsmap-staging.mapquestasia.com
www.mayfairmedsacramento.com
mc1anyarc.com
www.admin.meeplemeet.app
michelalcantara.com.br
beta.mojoule.com
mormoph.com
mrbarry.com
murodehonor.com
dev.myadidasgolf.ca
auth.mynixos.com
nitetrainpizza.com
notorioapp.com
stores.ordertray.com
www.owrs.co.uk
dev.part3.ca
www.paulisac.com
www.pendikkaynarcaasm.com
petmetru.cz
www.pfmc.co.nz
planetmeme.com
premierechoiceconsulting.com
www.pristine.design
streetbangkokissy.order.pulp.eu
pushtable.com
quickpass-admin.com
www.rachelplante.com
mobile.redriver911.com
reglamento.app
panel.rgn.io
dev.risevestorsmf.com
robensy.com
sarisa.cz
serviciosrandy.com
demo.shadecharger.net
shiitake.dev
www.shiseido-live.ch
www.simas.dev
portal.sosharu.com
streetartworldmuseum.com
www.studiomeliina.fi
audrn.studiossolution.com
www.surfa.co
swoopdaddy.com
syscap.com.mx
ludo.thearnab.com
year12websites.therealmrking.co.uk
trainapp.fit www.trainapp.fit
u-mts.com
link.upos.io
viscocity-vapor.com
www.wishesai.com
wnewman.dev
workboxapp.com
zarag.dev
zarataahhut.com