Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.sotop5.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
38:36:C8:AB:0F:44:04:8D:69:6C:D6:52:1F:96:E5:40:EE:F8:0A:A1:D9:79:4D:53:70:AB:D7:8D:D2:85:6D:FE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
paulisac.com

Other domains in certificate

login.3k.nz
aadityaa.co
smartpmk.pmks.ac.th
www.accidentalreality.com
camping.adeco.ch
ahorroseguro.cl
alguitomas.com
www.alphawavesystems.com.mx
mur-video-desjardins.anagraph.io
shindanmakerapp.andooown.com
www.antoninofisichella.com
app.apisailor.com
appmetry.com
pokemon1.arenakouryaku.com
advisor.askleeloo.com
download.au-schein.de
www.b2bflights.com
api.billy.com.co
bokhoquynhnhu.com
carmakersites.com
casting.carmeona.com
www.joinact.co.il
heeshafoods.co.tz
coconutlaunch.com
appback.iris.com.tw
jointhequeue.countdown.co.nz
www.danielareina.me
dmify.pt
mobileportal.ehryourway.com
www.elizso.dev
api.enezatelecom.com
enishi-tech.com
erikedit.com
pwa.fenix.group
filliscoffeeshop.ro
admin.fmnd.com.mx
formify.cloud
fuori-posa.com
www.console.genvision.it www.liverank.genvision.it
dev.georginacope.co.uk
hellozayo.gonuts.ai
pqrs-dev.migracioncolombiac3.gov.co
hedefofis.xyz
dev.helice.cloud
shiho.himeshi.com
phaman1238.id.vn
pasaporte.ilerimplant.com
indefor.cl
link.insidr.trade
chatbot.isp.mo
jkt-sb.com
focalpoint.karmyog21c.in
kidd.pro
camperlocatie.kokima.be
lebonwedding.be
auth.magknit.dk
galleryx.marsfrog.com
martinhuang.com
mattbairdmusic.com
mineralcenter.it
neod.se
www.nextayah.fr
niwa-express.com
study.nourishbynara.com
expert.ospe.on.ca
staging.services.ordoschools.app
outrefair.co.uk
particlehub.org
passionfly.io
percussion.ninja
dev.app.plan2win.be
auth.quizthis.ca
www.rheintal-guide.ch
sandalwood-research.com
demodot.scorce.io
www.senning.dev
www.shahname.online
app-api.sigma.trade
singinglessonsrotherham.com
solypm.ca
www.sotop5.com
uchicago.sowl.to
srmindonesia.com
stinkysox.com
bodacornejocanas.swanmoments.net bodafloresbatres.swanmoments.net bodamejiachavez.swanmoments.net
sylviaboamah.com
admin.dev.nominator.synapps.hu
m.app.time2tri.coach
links.todoempleos.mx
ubccourses.ca
www.ubjective.com
masterhandschool.wela.ph
wlogistics.com.mx
capitaldois.xptoconsig.com.br
yath.art
yllasnorthernlightcamera.com