Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=link-test.wifiesta.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 25, 2025
Valid Until
March 25, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
96:BD:B9:06:89:36:3F:D7:09:F0:C6:2A:C0:B5:C1:7E:42:06:7C:48:14:64:58:1C:03:8A:CA:62:26:19:47:40
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
old-dev.testmaite.nl
old-flow.testmaite.nl
oodemo.abacus.co
app.adquia.com
payments.lapp.advancedlapp.com
admin.agorify.com
agrocontrole.ch
aiagencymarketing.co
andesbot.com
asekakehatarake.com
atharicollective.com
register.bearer.com.au
bellbirdmusiclessons.com.au
www.bhsswimanddive.com
www.bikesleepbike.com
admin.bindr.ai
blretroracing.fr
bouldersoftwaregroup.com
www.bracesguide.com
matchday.brondby.com
bronzestarmedical.com
browserimages.com
auth.bugsnfeatures.com
carthagogym.com
www.chialinghsieh.com
cliniosglobal.com
imagestory.co.kr
www.codingexpress-rnd.ca
l.communiski.com
www.creatival.fr
atletas.dashport.run
davegreig.dev
dianayangel.com
admin-v2.digiqc.com
dnwdebt.com
suggest.dot.news
drjohn.dev
short.ezconsult.co
app.ezlogbook.com
www.fireremote.app
floriangrasser.com
www.foodlane.ng
finance.ftrustee.com.br
app.fuddio.com
fuddio.com
www.genevievekarlein.com
bf-dev.gestion-traiteur.app
www.glovers.fr
goenway.com
guitarlessonsleicester.com
hairbynoora.com.au
www.hanuman-chalisa.com
dev.deeplink.hifeelgood.com
admin.huddleandscore.com
carfactory.imagin.studio
immersified.com
www.ismseminars.org
isports88.com
www.izyourlife.com
jayoungkoo.com
www.juventus-herisau.ch
go.konnek.app
mind.level.game
calculadora.lojaistore.com.br
manager-dev.lottasystems.app
autem.monetare.com.br
www.myfitnesslevel.app
stopngo-dev.mytechnis.com
link-dev.myxt.com
needride.app
www.nom-tracker.com
www.oipolly.com
www.opbs.uk
app.arco.org.br
cv.phamtrungnam.info
admin.pixxers.com
acculynx.productsignals.com
www.purrcoin.org
www.qenwan.com
rcenter.ripley.com
www.sanfried.de
sauravzen.com
shik.ai
sintlambertusvrienden.be
epfl.snapmentor.no
finaltouch.softdevza.space
anu.studiocloud.dev
www.suttonsoft.com
theoriginalturbosaver.com
therafood.be
www.thesudoacademy.com
tsun.tw
dev.vedly.site
www.vyrfi.com
waifare.no
randompicker.watchaturtle.com
www.wevainfotech.com
link-test.wifiesta.com
wirakom.com
api.zapchat.co
Other domains in certificate