Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=app2-sempresoft.refiltek.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 10, 2026
Valid Until
April 10, 2026 61 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:21:75:C3:15:74:5B:9F:15:CF:46:01:CA:D0:C5:52:8F:4C:DC:5B:96:7C:78:8B:20:40:5A:B8:C2:FA:C4:51
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
natal.stargaz.ae

Other domains in certificate

300.io
the3qabacus.3qabacus.com
zendesk-toggl.42nd.co
www.hgcsonepat.ac.in
aig-demo.affinity.do
amevor.com
www.anyflow.dev
www.apptender.app
arifenergysolutions.com
bartzatelier.com.br
vattna.bbe.nu
teachers.preschool.bee-happy.club
bevwerk.com
biild.com
bingo-online.app
mindfulness.bonabotse.app
bonjiartworks.com
www.byteandreason.pl
ceramcreator.com
teach.classroomhub.app
anesonic.ottimosystems.co.th
www.codeheroes.cz
qa.edubot123.xbot.com.vn
contributor.pw
couper.app
bleeding-edge.clue.manage.cuona.io
dualudos.com
lockers.edgeofthewedge.com
www.etheoncollective.org
florcastromanimpresiones.com.ar
task.gamsoft.kr
www.gradstay.com
gruener-salon.com
hakol.site
healthfrequencies.org
homecanvas.store
horsecareapp.com
howtocancelfubotv.com
hyeji.dev
linhnguyensoict06.id.vn
scan.ignw.io
devapp.istiqlalhouston.org
koukilab.com
libria.club
tracking-beta.lifo.ai
localbox.ai
www.lukeclegrand.com
www.mamtachauhan.com
mascotaya.lat
millidadlavash.com
www.misaunde.com
kalkulatorlistrik.kuntoaji.my.id product.informacion.my.id
mycoffeemap.app
mystorymap.com
www.namopackaging.com
newgenai.io
front.nightzookeeper.com
ranipet.onewaytaxiwala.com
www.pangeapickup.com
varnavn43e.parkalot.io
partidostudio.co.uk
patrickandersen.dk
piam.app
shipper.pickwings.ch
game.poven.ie
premiex.top
protradingskill.com
admin-dev.realtorsathi.ai admin.realtorsathi.ai
app2-sempresoft.refiltek.com.br
sales.revolutiones.org
www.roadhero.com
samur-ai.jp
www.sanchaya.app
scoremate.online
www.sekerme.com
admin.siriusplataforma.com
slimlazreg.com
lib.speakylink.com
ssddroptaxi.in
www.stefanxo.com
syncsoft.app
admin.talkster.app
www.tallang.no
tandersmart.com.br
teamtale.app
tecnopaycr.com
termaspacu.com.br
www.thetaxchecklist.com
shinehill.thousandfootmile.com
core.tpf.be
tribeskart.com
trinance.pro
dev.upnotch.com
www.ushen.ru
voicevault.in
app.engage.ffswrcuatwrkekznmzjt.voyagernetz.us
wesleymb.com