Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=itagindia.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 03, 2025
Valid Until
February 01, 2026
73 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0D:E8:96:D5:B8:8D:CB:6B:89:B4:91:5E:40:A2:51:84:82:06:03:3C:CB:8E:5D:89:B8:40:DB:5E:AA:C0:C5:3B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
ourpokergame.com
505tango.com
99per.net
www.actiwshowroom.com
akinsfoods.com
www.akshithacrackers.com
hp.alexsandro.com.br
areaazulitaperuna.com
astrologerconnect.com
austinvanrider.com
www.blaulichtplaner.app
www.bracketize.me
busterradio.com
cargopacker.co
casasadvocacia.com.br
www.chargelink.com.br
maps.checkd.it
verona.clau.io
clenz.app
www.ecoindia.co.in
arttoktok.co.kr
heroar.co.kr
link.rocketchart.co.kr
codringtonfarmersmarket.ca
demo.collaborative.fm
college-app.com
www.colloscope.com
cotedelanoire.fr
deepanime.ai
diamondcoffeehouse.com
www.diaryhomework.app
vemlo.easysignage.app
encomarhn.com
escoteiros.app
www.ether.ee
www.everythingsatvik.com
felixbrunold.com
flype.fi
links.fvpn.dev
www.garvitmangal.com
r.gorobo.pro
www.greenmini.nl
gyok5matek.hu
hashtagify.app
dungit440920215548.id.vn
admin.igluhelados.com.ar
www.indialogist.com
itagindia.com
www.jonathankilpatrick.me
dev.kaleamarket.com
kenshocyber.com
kristof.codes
kyashif.com
leogalski.com
app.locallyfy.com
amz.m3offer.com
www.maxgrant.com.au
admin.minharota.com.br
minicashcup.com
moodart.app
nanukadesign.com
neonankiti.dev
www.nghedaionline.com
nicehotelanamur.com
about.nightdistrict.com
nodify.app
www.numismat.app
nyaargh.com
admin.parascore.com
bedburg.parklab.app
apps.publicvibe.com
bbuilder.raymondzhou.com
bhx.live.realtimeknowledge.com
staging.richku.com
rinmore.com
dashboard.rinnolab.cl
rumboalexitoya.com
url.santo.digital
www.sharondrycleaners.com
shiftinghorizons.io
www.shipcarx.com
www.silviolino.com.br
backoffice.spreedl.com
staderverse.staderlabs.com
starfilaments.com
chatduell.streamgames.tv
talvix.co
tataelectrical.com
the-hive-mobile.app
www.thehalfwaycrooks.com
fightersgym.turnosweb.app
kosten.turnosweb.app
letspole.turnosweb.app
noiclub-bottles.uebify.io
backoffice.unemplacement.com
www.uscengr.com
versify.app
stage-app.winbrook-cloud.com
ymr.io
zaar.ai
Other domains in certificate