77/100 SECURITY SCORE

Certificate Information

Subject
CN=valeri.design
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 12, 2025
Valid Until
March 12, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
61:FC:74:7A:0E:27:FA:E8:AA:20:D8:BF:58:08:18:D5:9C:FA:8B:A9:E4:13:8C:8B:64:DE:CC:2D:6B:38:8B:D1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
pharma.lapachoit.com

Other domains in certificate

app.1medcap.com
share-your-video.3cm.app
wechattest.aigens.cn
api.jetpics.alledotech.in
link.allwayswithyou.com
apolido.de
www.azadeducationsociety.org
ingatlan.bk0.eu
privacy.blocer.app
bmgress.app
www.bramoudijk.nl
brokerleagues.com
www.car-matcher.de
catkat.org
link-test.chilisoft.org
nakedlukas.clau.io
link.clicnscores.fr
scial.coderave.dev
digiart.codetensei.id
blacksheepbarbershop.com.cy
hedefofis.com.tr
compteur-horaire.be
condeparadela.com
app.coor.do
application.decision21.cz
www.dinamicaenlinea.com
karamenya-miti.for.dinii.jp
clinic-admin-mft.doctorbook-dev.jp
droptaxivellore.in
essenceud.xyz
ethanalanbarnett.com
www.executive.one
fednav.org
vs.frc.nexus
open.gescom.nc spi.gescom.nc
app.hellojeweller.com
humanware.com.ar
themer.ili.dev
preview-canary.interplay.io
nathaly.invigt.com
jaivikpots.in
www.jyothisham.com
lawyersdiary.pro
www.ldimitrop.net
leanai.app
cv.lenggiauit.com
localspot.fr
www.mariannaalexandraki.photos
matrixconsultancy.in
www.app.medconnect.io
www.meetvers.io
preview.memlock.io
www.mhg-group.com
www.mirayamediahouse.com
www.mskcode.com
schedule.ng-conf.org
www.nicolesullivan.xyz
test.my.nilicare.com
gt.nitra.dev
nosp.io
staging-muanhom.onelife.vn
tenkasi.onewaydroptaxie.com
coordinator.opexawards.com
ups.optimum-transfer.hr
www.padmajp.com
palacio.top
pelavo.pl
perugol.top
intervally.pierresucker.com
dev.intake.pigeonm.com
admin.planasana.com
editor.plu.us
prakharsinghdhaila.in
www.punchecademy.com
www.rahasak.com
recordia-dre.cymru
rightthere.xyz
shipagile.site
platform.shrq.sa
snipman.io
beta.solvr.org
sp4cew4lk4.net
e.sports-safety.com
www.shortify.stefanhinterhoelzl.at
bodaescobarramos.swanmoments.net
wpdemo.tason.com
tenniswebsitebuilder.com
eliana.tewodros.me
tomsys.page
www.toucanet.fr
www.unboundformac.com
upstartbdagent.com
vakronix.in
valeri.design
www.values-cards.com
admin-dev.wejha.com
dashboard.welovemoons.com
youtubeday.com