Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=javierlaso.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 03, 2025
Valid Until
January 01, 2026
33 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:13:D1:7B:B3:ED:B4:3C:BC:7D:B1:F0:EB:09:15:25:08:51:93:ED:0D:41:E6:0A:58:DE:68:97:C3:46:B4:0A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
okolo.it
n8next.44agents.com
acceleration.solutions
app.admesh.cloud
dev.admesh.cloud
appdev.alberts.be
wgapp.alles-n.eu
test.appteck.de
admin.arketiks.com
arounds.us
accounts.ascoa-cm.org
opfikon.avdis.ch
ad.bsf999.co
bsf999.co
www.ad.bsf999.co
www.bsf999.co
www.ma.bsf999.co
quote.cheetahfarms.com
examgrader.studytube.co.in
coderoomlk.online
intekelektronik.com.tr
convertidordeextractobancario.com
datmodo.ai
new.davidecampello.app
dodecapavilion.com
new.dreamnav.app
console.eduopia.com
empireaviaitionusa.com
equilibriumquiro.com
www.eshwa.ai
tichka.essaouira.eco
evengo.space
finclave.com
www.finclave.com
auth.liptovskastiavnica.fitqube.sk
python.fulfiledu.uz
gbbcsm.info
mbc.gov.kh
www.gp-rh.fr
cdn.gyerunkanyukam.hu
w11.haraldssons.se
hayakumiraq.com
hecareswecare.org
pre-usuarios.infolibre.es
insightfulsaga.com
www.ioailab.com
app.jakubstellner.cz
javierlaso.com
www.javierlaso.com
dev-app.jerimed.ai
joolbook.com
joshcrackers.store
www.lavava.com.br
www.lingify.co
lmao.fail
loughdan.com
www.loughdan.com
www.luckle.co.jp
draw.marbal.ca
www.maternalnutri.com
app.minervaimoveis.com.br
budget.musicdatalabs.com
jarvis.nishkal.in
onemovie.jp
nagapattinam.onewaytravels.in
staging.app.pave.com
pipasscrapbook.pt
configurator.pixelsucht.net
planily.fr
www.planily.fr
biz-assist.pradeeni.com
onpetro.produzza.com
proposalenginefco.com
portal.psybernova.com
rallyfeed.com
revisalo.pe
app.ricoss.com.br
rohitmaddiboina.in
www.roommatedecor.in
www.safe-helmets.com
scorecredy.com
www.selfless-ce.org
portfolio.simonesanfilippo.online
www.simonesanfilippo.online
singlephoto.com
link.slumber.fm
chat-test.smartmation.com
bodaespinachoi.swanmoments.lat
www.techridge.co.uk
utilities.thetechnicalfist.com
travelhop.io
tripsplit.io
unormous.com
usuathleticscamps.com
www.usuathleticscamps.com
valeavante.com.br
volkantezkan.art
metaverse.widebrain.kr
xetrip.vn
share-stg.yoou.com
Other domains in certificate