Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.thedataninja.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 31, 2025
Valid Until
January 30, 2026
74 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C3:68:FD:F4:39:0D:65:3D:9B:D3:3F:E4:CA:1D:2E:9F:18:EB:57:34:37:4C:E1:B7:24:21:76:A2:BB:F0:11:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
omnibusdemexico-performance.lernit.app
40gauchos.com
aandtsalon.com
curator.abctalkies.com
sir.abctalkies.com
battlesnake.adrianocola.com
allwell.co
alnassrnews.com
annarborbites.com
azmapi.com
referrals.bankaks.com
benchmarksteels.com
www.blockapps.app
test.carlkrauss.com
ceftheory.org
cgpricecheck.com
www.chendhur.com
madurai.citydroptaxi.com
classycourts.com
www.clatcoach.com
wallet.cloudcardinc.com
construtech-llc.com
curtisfraser.com
dakotastates.com
www.dakotastates.com
dasronit.com
designdocket.com
www.devflix.io
dire-wolf.com
connect.se.doclytest.io
doubles.ai
dvelsmithbuyshouses.com
ekoservis.club
early-access.ellume.net
storefront.emporix.io
www.energyandenvironmental.com
enjizha.com
fenellawebb.com
ffi-firebase.link.fintechx.digital
fl1ght5.net
admin.getguider.co
greatnorthwoodsgoods.com
groundfloor.africa
www.guesssync.com
www.happymodals.com
events.itsltd.rw
reset.jejurail.com
joinprepmi.com
dev.jpg.studio
julia2rose.nl
kes.kanbaytech.com
signin.careers.kaskaskia.edu
www.learnnorwegianapp.com
app.littleones.co
makishima.co
erp.mapleeducation.ca
mattonym.com
maxbarber.berlin
mimicboxstudio.art
moletrappernearme.com
www.mydocaiapp.com
www.mfrz.naser.cloud
newenglishacademyvv.com
app-link.nexquare.io
www.ng-run.com
www.oken.app
orderbearkingbrewing.com
app.pracakomisja.pl
www.primeleadssolutions.online
projectnext.app
www.propertybuddy.app
proseller.app
rademacher.cl
www.radfi.network
start.reaction-club.app
revledg.com
runchamps.app
admin.santaritajacutinga.app
manage.staging.sensorfact.com
www.shineinvitations.co
pfeiffer.shopstudentstore.com
teams.sicrux.app
www.simplymove.app
softsignal.co
sportboard.app
suaversaostore.com.br
swimfortri.co.uk
www.mentor.talsee.app
thecenterspace.co
www.thedataninja.app
www.tophaudio.us
coach.trybe.do
twentywineteen.biz
typeforce.app
app.ubutouch.com
voomsoft.com
www.webnxior.com
weshloneh.com
wingbot.app
woombyebc.au
Other domains in certificate