Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=websecurityscore.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 29, 2025
Valid Until
February 27, 2026
63 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AF:AA:1C:C3:42:6E:CC:39:B6:E7:FD:BF:24:D1:6F:05:A1:41:4A:65:89:0B:AD:9E:D2:CB:8F:5C:D8:D4:A9:28
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
nelsontechventures.com
admin-staging.abhikalp.org
www.acemauritius.mu
project.adesign.work
app.afopadi.org
ajrpdd.org
aparajitacnc.com
cdre.araynatech.com
stgweb.atlasirmscom.my
baiting.buzz
www.baiting.buzz
invitations.breadandbrew.in
cinemawriters.com
wakaibu.co.ke
condeprime.com
www.dev.crethod.com
cuponzone.com.br
darc-reporting.com
www.dpmcyber.com
drgmed.co.za
exchange.enkisser.space
enkyo.app
evolutions3d.co.uk
app.favoyu.com
findin.shop
flufftastisch.de
fogwall.foo
www.fogwall.foo
b.foto.ml
frbjjacademy.com
fuelsgo.com
sandbox.gengomori.com
giovanniruizmeza.com
globalprintingpackaging.com
goblintownstr.fun
halilturanmimarlik.com
hanteksolutions.com
ibdaa-alsahra.com
igrejaibc.com
isomera.ai
polterheist.jonlun.se
jugandoseaprende.com
kuroediting.com
lakesalt.us
latamlawyers.cl
leapable.ai
menuor.in
www.menuor.in
metodologiasinestres.online
miestanciasoft.com
moofy.vip
myskintwin.com
www.nafeessuites.com
akhouse.nlgroups.org
odikurotravelagency.com
www.ipacra.or.ke
paardong.com
prepaid-order-at-table.insel-mainau.paymytable.com
payoffmatrix.net
www.picoboom.app
www.pixelarweb.com
staging.procurtal.com
prontus.ai
www.prontus.ai
resq.rccsonline.com
linx.rocketkor.net
mocketbnk.rocketkor.net
operations.rocketkor.net
roztrace.com
rudisathari.co.za
app.salesnavsplit.com
samuelpulcini.com
sea-ch.org
www.sea-ch.org
shivdeeporganic.com
www.shivdeeporganic.com
speaksmart.co
stevedentsstunts.co.uk
stickycloud.app
storieswriterai.com
www.storydab.com
bodachavezgomez.swanmoments.lat
xvfernandareyes.swanmoments.lat
symplifye.tech
edifice.techaroha.com
testyourcontroller.com
thessateabar.site
unhacerta.com.br
www.unhacerta.com.br
v212.org
vehicules.net
vishvaura.com
vpsrf.site
vrtue.io
weatherit.is
websecurityscore.com
www.websecurityscore.com
www.werkraum-leonberg.de
www.wintarkov.com.br
www.zanyue.autos
Other domains in certificate