Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=lukaci.info
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2E:3F:E7:2D:0D:AD:6D:2A:BF:B1:C4:F1:91:14:65:EB:71:F7:8F:CC:50:52:05:D2:09:ED:0D:73:1C:DA:C4:0C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
owlcomputing.com
web.2value.ro
www.4health.is
www.adecuo.com.co
share.airbabble.com
zombattle.apm2.studio
webapp.apporta.eu
www.arffis.com
astar.app
auroracoin.us
www.auroracoin.us
dashboard.bangkit.academy
www.beyond-agentur.de
links.bloksec.io
sociallogin.burgerkingencasa.es
www.centrodan.dk
cieraszew.ski
codeclick.dev
nirajs.com.np
www.concicon.com
copagency.org
mytracking.customdat.com
datari.eu
www.debabhishek.com
defnx.tech
deeplink.staging.delcom.nl
www.ds-consulting.co.za
certs.duc.tf
crm2.edemdance.kz
elfisangels.com
fitsoco.com
www.fitsoco.com
gamkasafaris.co.za
www.ruota.gd.si
staging.gestion-traiteur.app
app.getadventurely.com
giustagenzia.it
dev.partner-portal.goama.com
www.gochurn.com
guardianangels.io
habibsogbesan.com
hotelcilantro.com
dashboard.industrialpmr.com
teste.hml.simulador.izii.io
www.jaredcarrano.com
www.jurgensvds.com
cedar.karla.ai
share.kenson.app
www.kmc.glass
services.kotai-bio.com
api.labzenit.com
www.loupak.com.br
lukaci.info
nature.makerdao.com
www.marco-corp.com
www.mariehamnsflygplats.fi
mattrussell.dev
estabelecimentos.midiamarketingtecno.com.br
my.migraine-calendar.com
www.mild2mirchi.com.au
rtc.montblanclegend.com
mytamatnotif-proto.mws.fr
www.nem3calculator.com
www.nessgor.dev
app.todosreciclamos.nhecotech.com
noted.work
cgen.nts-whitecoast.com
h234l9hfmehn8q9b.staging.nyansget.com
www.nyratyagi.com
oasisdigital.com
www.pinarmahallesi.com
www.premiumwebsitecreator.com
priceindiahub.com
progressbookplus.com
www.proportioncalc.com
putfontein.co.za
shopq-staging.qsciences.com
queeklee.com
rasmusgerdin.com
act.ringastage.page
royjackman.dev
cardiffcity.scouthub.app
shamrockrovers.scouthub.app
www.sently.fr
shumilov.pro
skmfarm.com
ekyc.somuri.jp
fbase.sosialbooster.com
sagelec.speakylink.com
synthetize.me
www.tennisgaspe.com
www.theocar.cl
traceychattaway.com
app.tracknicity.com
staging.trin.me
evento.tuadomanda.it
urinify.com
vintagepro.app
www.zachsoliman.com
ex.zenithr.net
Other domains in certificate