Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=preview.dishoom.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 29, 2025
Valid Until
January 27, 2026 63 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AC:09:FF:59:1D:BF:E5:83:D2:7B:D5:80:2E:16:60:B9:20:CB:BA:0F:D3:90:11:C1:5D:E9:8F:53:A5:21:27:2A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
photo-stitcher.com

Other domains in certificate

agilearchitects.de
www.andreasaarrestad.com
www.arvin.app
beta.bimmeet.app
www.borgo.app
wallet.broadleaf.work
www.cargodrones.ch
www.colorantibottoni.com
buchung.construyo.de
diy.crystalputeri.com
digicomsoftwaresolutions.com
preview.dishoom.com
distilearn.com
www.dolarja.com.br
auth.dynengage.com
www.emilypancake.com
auth.enginar.app
pollit.esm.dev
www.estacalitoral.com.br
linkstest2.eucare.tw
ev-app.de
evos.studio
farmote.com
omnitel-dev-testing.getomni.one
www.grocerxl.com
www.groupby.app
gsmycar.com
guitarlessonsipswich.com
www.haylingcomputerrepair.com
heinekenpe.com
www.helloh.jp
hodlrun.com
link-pm.app-staging.huttonsgroup.com
www.idropstudios.com
console.servicity.in.ua
indiahippie.com
www.interviewprep.net
intuosol.com
dl.ireadarabic.com
www.javiervanegasramirez.com
www.jeerany.com
www.jessie.ai
www.jmcharo.com
junglesupplyco.com
demo.kards.fr
madurai.kishoredroptaxi.com tenkasi.kishoredroptaxi.com
kognitec.com
levypay.co.uk
vantagesales.liberte-mode.com
www.libertytips7.com
devops.portal.loadsure.net
www.longbeachclinicaltrials.com
dev-central.m3dicine.com
majorna.app
link.development.matera.eu
dev.meetsalty.com
www.app.miecoa.com
bi-portal-dev.mmdsmart.com
mostaamel.app
noktaconsulting.com
oleloflix.com
test.peymynt.com
bombuscar.planck.biz
dl.po-popo.com
www.propertyandgardens.co.uk
www.proshooters.com.br
sandbox.protip.app
ravenapp.org
www.readgator.com
reamoji.com
rebalion.com
recep.io
refresh.estate
remygarenc.com
www.renginiuasai.lt
integrar.ruptiva.com
simpleagence.fr
zeal.sirajulhuda.com
sivakasishreepyrotech.com
size-tool.com
www.sunshine4kids.com
app.tamosaqui.com.br
rummikub.tclee.dev
compiler.techaroha.com
dea.thediners.in
thermokracy.com
tii-va.com
rn-bosyu.togetter.dev
tokishil.com
app.tradecheq.com
python.ukantu.dev
varaharmas.hu
vibecheck.it
www.vishnuanilkumar.ca
api.walkie-talkie.io
www.wardice.app
wikiveg.com
www.wktk.jp