77/100 SECURITY SCORE

Certificate Information

Subject
CN=favstorage.me
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 30, 2025
Valid Until
January 28, 2026 68 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E9:A4:DA:BA:5D:CE:43:CC:37:15:2D:89:6C:7D:F6:55:A2:29:C5:77:BB:39:33:C6:02:DC:62:E7:05:E1:71:A0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
pdf-reader-qa.goread.com.br

Other domains in certificate

10bye.com
robern-test.3dcloud.io
www.adamantinedesigns.com
addwareindia.com
alishanpark.com
amyakademi.com
bhitinfotech.com
kamdhenu.bhoomida.org
bizcekazandirankelimeler.com
blissfulbites.ph
castlebook.com
api.cemtrik.com
post.charcha24.com
www.chrisport.com
groceries.codeboutique.com
python.codetopro.com
www.colectivoalquimia.cl
portal.cpa4expats.com
cricinclusive.com
syllabus.deeniyat.com
resident.diffe.rent
dinosurvey.com
app.dr-grading.com
dev.dashboard.eatie.in
edmik.in
eisl.biz
55bakerst.equiem.mobi
facelessmadmen.com
favstorage.me
flutternl.nl
gesta.ai
muestra.gestu.dev
giminc.biz
app.gineer.com
handyapp.jp
www.hardcard.ai
www.helgg.com
www.holsa.in
hudsonpryde.dev
dashboard.ibo-solutions.com
instrekt.com
iresto.id
social.juwelis.community
www.kordonrace.com
kortexweb3.com
www.krishnavibe.com
krushsoftware.com www.krushsoftware.com
leadertrip.de
learn2burn.co.uk
www.mahcus.com
malahatnationcds.org
www.menchasbeer.com
www.merlinsalamanca.com
www.mmdb.co.uk
musaffar.me
www.my-datacard.com
nepaladdress.com
neuralfeed.ai
nishanthsubramanya.com
noorfuelsystem.com
okinalabs.com
testaasa.openwallet.finance
link.panatech.io
paulclaytonsmith.design
pepsi.platform513.com
plink21.com
pocketone.xyz
links.profit.com
www.promocionesegresadas2010.com
www.raghavshukla.com
www.rajasekharan.com
www.randomroad.today
rentkarma.co
icabs-test.rentokil-initial.com
reocloud-staging.reoriginal.com
book.ridepulse.com
sasuscollection.com
searockinn.in
remote.sedorion.com
www.shannoneng.com
www.socmedaccelerator.com
spawn.me
squiiids.com
sreesanjayganeshcrackers.com
t7even.net
isosort.tapotap.com
tasskaty.com
links-staging.teeitup.com
www.thanaphon.dev
shop.thegoodstuff.my
treeved.com
unicreativeunit.com
upendocares.com
vmarksolutions.com
vcard-assets.we4u.pw
wieloslowie.pl
www.youvision.dev
rc2-mockup.zerothreat.dev