Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=hovawarte-vom-kloster-rohrbach.de
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 21, 2025
Valid Until
December 20, 2025 37 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2F:7A:FA:7E:DE:B0:FF:25:FC:22:32:4D:AC:A4:72:88:6B:99:72:98:8F:EC:AB:67:71:55:78:EE:F6:43:E9:A8
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
motive-force.com

Other domains in certificate

www.20questions.app
a-player.xyz
www.acchaudhary.com
adverb.dev
www.blog-stage.airesdigital.com.br
amsozzer.com
m.beauty-base.org
belcharmcosmeticos.com.br
warranty.brtsys.com
brutto-netto-grenzgaenger.ch
bumpmap.org
cal-comm.com
polecam.ceneo.pl
cheapshot.co
www.codeassistapp.com
www.newlifematrimony.com.in
admin.proeye.com.tr
app.cooperalfa.com.br
www.cromossomos.com.br
www.culturaecor.com.br
www.doctosapp.fr
policies.doremi.bg
www.dwellist.ie
www.eatfootball.net
edufoodhack.eu
elaraapplications.com
enmar.ee
entropylp.com
charla-pki.eximiait.com.ar
extractora.com
eyephone.wtf
www.fiatjaf.rocks
www.fl-insight.eu
freshtab.net
partner.glambox.com.br
auth.godmightsay.com
www.greysonalloys.com
www.hammondtruckingllc.com
www.mfg.happyteam.bg
camden-audiology-clinic.booking.hearlink.co.uk
www.hitechno.life
hovawarte-vom-kloster-rohrbach.de
www.hovdebakkenopp.no
www.indesigntraining.ie
social.jacksonfrankland.com
kingdom.watch
kinkerlitzchen-kreativ.de
banco.kziete.cl
mbti.labj.cc playground.labj.cc
www.livedesign.com.br
mangainfinity.com
app.moveon.marktplatz.com.br
es.martinlabs.xyz
mehmetyz.dev
account.migolink.com secure-dev.migolink.com
go.mirell.it
moonvalleylauria.com
www.motech.dev
opensource-dev.myvaillant.com
www.publications.adap-2017.nastad.org
security.nautilusdefense.com
onemoment.live
www.openmidi.com
njerusalem.orpheo.cloud
rank.pandastudio.io
www.pensioenbijhenryschein.nl
www.portalferiados.com
preprod.dashboard.qvin.com
decameron.ramaz.org
app.redrive.red
chicago.rehomevalues.com
www.rmend.app
my.salem.edu
www.serenemotors.co.uk
sigmaacademicos.com.mx
www.sillyinvestments.nl
www.skyedevices.com
admin-test.sorafinance.com
www.spacefood.ie
design-manager.stg.sphoniclabs.net
storana.space
demo-link.taptaplah.com
thepathofyogini.com
tolany.ch
tori-dev.com
trophyhouseindore.com
www.trueorfalse.app
www.uiux.de
clientes.vergy.es
vigofy.es
runway.viralfission.com
auth.wehealth.org
app.weneed.ch
wiktoriasakowska.pl
yondemy.com
zebcode.com
dendron.zik.ooo