Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=app.kick-it-rheinflanke.de
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026 35 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:8E:6F:98:39:98:88:27:58:4E:7C:40:48:31:E3:44:B3:6F:09:C0:21:82:B8:65:1E:0B:D8:E3:D9:DD:C6:45
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
panian.net

Other domains in certificate

notifications.2dkit.com
timbertech-int.3dcloud.io
www.777jackpots.com
technogymaipt.aipt.dev
alaygut.com
djr.aldridge.app
asiathaishippingservice.com
test.backapp.world
join.beem.me
bookingsorted.co.uk
buketochkamsk.ru
burcaluminyum.cammetalapp.com
install.canarymail.io
decora.com.tr www.airosystems.com.tr
www.contabsmart.com
cosmostechnologies.net
passburn.cw-it.de
auth.deployment-wal23r.cyberhaven.io
www.danielgalindo.dev
asset.dd.zone
www.diceco.com
www.drogueriagycpharma.com
embednotes.com
fashionhouse.co.za
feedfest.xyz
episeron.finovers.com
www.gd-vs.ch
www.grafk.design
hanhyz.com
www.harrishan.com
hisrael.info
www.hulupride.com
inarmex.com.mx
www.indiancallerinfo.com
dev.imports.infusioncenter.org
parkisense.innomed.in
proxy.joinsherpa.io
nse.joranmulderij.com
kevinaiach.com
keyboardwarriorsinternetcafe.io
app.kick-it-rheinflanke.de
l-epargne-salariale.fr
lichliter.design
www.lomobox.photography
maderr.net
www.marlonrondinelli.com
www.previewer.napalmcustom.com
loveletter.niafango.fr
evaluer.nissansherbrooke.com
dev.app.ogram.co
app.oneclickdesk.com
onethirdasiancuisine.net
outroquiz.nl
befirst-qa.ovdns.co.za
pagcomanda.app
portal.particlehealth.com
vote.pathway.vn
perryandjohn.com
rewards.petalslaserlounge.com
www.pixel.pictures
www.pizzeriacamilostaglio.com
short.prefon-retraite.fr
rbz.projectafrica.online
prottaribeiro.com
qiestudo.com.br
join.quizness.dev
quranbook.co.za
employment.refugeeone.org
app.rondi.ru
www.roomalaya.com
sebasbad.app
www.secadoreskoleff.com
sharenprofit.com
www.signpenfree.dev
principality.swapp.work
internal.symmetryapp.org
www.synrock-tech.com
www.tallerdtres.net
teknik.tv
www.themangojam.com
www.theoenterprises.in
www.timetotalktherapy.co.uk
appchat365.timviec365.vn
api-beta.tokyomixcurry.com
app.trackify.com.au
cdn.dev.upnext.in
salem.vishnutaxi.com
vitasapp.vitas.com
vlogmanager.com
volkanwelp.com
nbna.vsight.io
blog.waitwhile.com
getwebsite.webbest.co.za
wonderfuldeath.com
yasmineducation.com
mta-sts.ytec.co
firebase.z0p.org
zonderapp.com