77/100 SECURITY SCORE

Certificate Information

Subject
CN=link-test.wifiesta.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 25, 2025
Valid Until
March 25, 2026 84 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
96:BD:B9:06:89:36:3F:D7:09:F0:C6:2A:C0:B5:C1:7E:42:06:7C:48:14:64:58:1C:03:8A:CA:62:26:19:47:40
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
old-dev.testmaite.nl old-flow.testmaite.nl

Other domains in certificate

oodemo.abacus.co
app.adquia.com
payments.lapp.advancedlapp.com
admin.agorify.com
agrocontrole.ch
aiagencymarketing.co
andesbot.com
asekakehatarake.com
atharicollective.com
register.bearer.com.au
bellbirdmusiclessons.com.au
www.bhsswimanddive.com
www.bikesleepbike.com
admin.bindr.ai
blretroracing.fr
bouldersoftwaregroup.com
www.bracesguide.com
matchday.brondby.com
bronzestarmedical.com
browserimages.com
auth.bugsnfeatures.com
carthagogym.com
www.chialinghsieh.com
cliniosglobal.com
imagestory.co.kr
www.codingexpress-rnd.ca
l.communiski.com
www.creatival.fr
atletas.dashport.run
davegreig.dev
dianayangel.com
admin-v2.digiqc.com
dnwdebt.com
suggest.dot.news
drjohn.dev
short.ezconsult.co
app.ezlogbook.com
www.fireremote.app
floriangrasser.com
www.foodlane.ng
finance.ftrustee.com.br
app.fuddio.com fuddio.com
www.genevievekarlein.com
bf-dev.gestion-traiteur.app
www.glovers.fr
goenway.com
guitarlessonsleicester.com
hairbynoora.com.au
www.hanuman-chalisa.com
dev.deeplink.hifeelgood.com
admin.huddleandscore.com
carfactory.imagin.studio
immersified.com
www.ismseminars.org
isports88.com
www.izyourlife.com
jayoungkoo.com
www.juventus-herisau.ch
go.konnek.app
mind.level.game
calculadora.lojaistore.com.br
manager-dev.lottasystems.app
autem.monetare.com.br
www.myfitnesslevel.app
stopngo-dev.mytechnis.com
link-dev.myxt.com
needride.app
www.nom-tracker.com
www.oipolly.com
www.opbs.uk
app.arco.org.br
cv.phamtrungnam.info
admin.pixxers.com
acculynx.productsignals.com
www.purrcoin.org
www.qenwan.com
rcenter.ripley.com
www.sanfried.de
sauravzen.com
shik.ai
sintlambertusvrienden.be
epfl.snapmentor.no
finaltouch.softdevza.space
anu.studiocloud.dev
www.suttonsoft.com
theoriginalturbosaver.com
therafood.be
www.thesudoacademy.com
tsun.tw
dev.vedly.site
www.vyrfi.com
waifare.no
randompicker.watchaturtle.com
www.wevainfotech.com
link-test.wifiesta.com
wirakom.com
api.zapchat.co