77/100 SECURITY SCORE

Certificate Information

Subject
CN=b.turs.mx
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026 45 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9A:44:20:1F:6D:D3:0B:79:01:7E:DF:83:4A:94:42:21:71:C5:F6:0B:40:7B:11:96:F0:6A:43:96:AC:F2:F6:E2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
monitor.qwip24.com

Other domains in certificate

tutoring.abstrakty.com
share.acrylic.dev
acua.co
staging.inhalte-neu.additive-apps.eu
appbuildr.tech
app.arukay.com
www.atheistengineer.com
app.dev.bookfocal.com
app.dev.cabotagestudien.com
missionen.calumis.de
events.ceyentra.lk
app.asabro.co.il www.nios.co.il
selfservice.moonlight.co.zw
mreg.worldpos.com.my
beta.coursebooku.com
dct-neuried.de
sn.dealescale.com
www.decisionjam.com
deproent.com
derekwellis.com
medbed.devduck.de
downloadtennis.com
ductaiphung.de
coachadmin.easytraining.de
hotspot.engelsoft.com.br
contact.expium.com
exponentedigital.store
www.smart.feedbucket.io
www.finetunemarine.com
w.finom.mobi
app.flowerai.de
fruitzy.fruitz.io
developers.gmelius.com
www.goodygs.com
www.hearmeloud.org
leave.huubap.com
bacer.i-taksy.com
www.inteligenciatotal.com
www.it-age.net
jaglavak.co.za
log.jamessolum.com
assets.jobsinsider.net
www.jonesinjapan.com
l.karaca-home.com
www.keywordresearch.me
short.kumunua.kr
basketball.labradorsports.com
lachmann.dev
ladycontreras.com
lostium.com
mangaio.it
matthewbachraty.com
meritconformity.com
spotify.messlehner.com
mocjic.com
links.mumara.com
munchkinnotes.com
myeventpass.app
www.myhelm.io
southeastne.mylnk.app
www.nattfotboll.com
tax.newco.cz
rateiotelefonia.cesar.org.br
link.parinthorn.me
parkermooseker.com
phenixgi.com
brault.portal.plenadata.com
pmcalabrese.com
lp-builder.pyxal.io
app.ramatuelle-tourisme.com
rapiddimension.com
agilemapper.dev.roadbotics.com
www.servethe.church
www.sgerard.be
shopchudlogic.com
www.silentbiplane.com
smileup.plus
www.sohoflex.com
www.southsalish.org
omsc.stratj.app
taiyoindustries.com
tangowall.com
portfolio.toupawa.com
admin.trueframe.com
unr.turbosbir.com
b.turs.mx bosques.turs.mx
vanquishergames.com
www.vbatricksntips.com
vcappsgt.com
admin.viewdigicard.com
vincenzoberretti.it
wallking.in
www.waywaystudio.com
egc.whyq.com.au
wiikx.com
xstrain.com
zerxe.com