Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=klypr.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 09, 2025
Valid Until
March 09, 2026 56 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
82:C2:D0:E1:BA:40:8A:7E:C5:10:CC:B3:89:90:75:8D:97:7C:D5:E3:D5:E7:09:BC:F7:09:3E:F1:C0:F0:1C:8A
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
pianissimo.app

Other domains in certificate

abbasali.dev
app.accru.co
acspay.in
candidatas.adalab.es
project.adamtsaidev.com
app.ambii.com
anywhere.healthcare
business.app-fenix.com
jumorap.astraty.com
inkhub.atlaxt.me
www.avenmor.ca
www.beachvolleyball.space
bigtreeideas.com
app.brzcourier.com
burnoutapp.be
sistema.capitalempreendedor.com.br
cdtbrasil.com.br
coptersite.com
creadoc-classroom.com
www.crowoak.com
www.dmarcellolandscaping.com
prav.drivevesta.com
easypaylk.com
www.entregas.com
docs.epap.app
equipocalido.com.ar
eren-bal.com
app.escuelamanuelbartolomecossio.com
gable.photo
greenmini.nl
hkgate.de
humanimpactpathway.com
i-handslab.com
www.illuminatibrotherhood.vip
epost.immanuelskyrkan.com
indicatorlab.xyz
jahanikz.com
jorissendejonck.be
juliewestman.io
timelines.keerati.xyz
game.keystonecrusade.com
app.kidsworldrecords.com
klypr.app
finaid.knowledgenest.io
lanex.com.br
www.secretmessage.linkpc.net
loganmcguire.com
auth.lubumi.africa
mayiai.co
dabruno.mewo.es
www.miseror.com
monblas.com
www.mongolianmilk.com
agenda.moons.rocks
www.multiversal.ventures
music-of-our-desire.com
moonlight.nakalua.com
admin.nemetmuzeum.hu
nevergonnagiveyouupnevergonnaletyoudown.com
nfd.miami
global.ninjacart.com
noveldy.gr
oridune.com
pd-leukert.de
jeansjournals.phros.ca
fanatics.prodigi.com
www.protify.io
papoom.quitaboletos.com.br
rdvau1ervirage.fr
realte.site
renjuki.com
areaprivada.ric.capital
namecard.risksteward.app
www.rizzato.me
rubysinclair.ca
app.savesoul.io
scanshot.app
seanap.tech
www.sherwingo.com
stamp-social.com
sttammanyrepublicans.org
swiftclick.com.au
tachasis.org
tdm.tadtelmax.com
teleboing.com
blog.thestyl.us
www.timezonewizard.com
www.timothyharley.com
tinyshader.com
www.tixora.net
note.tollfreetc.com
bellarj.tumrt.com
bo-preview2.una-community.com
www.usclassics.dk
utsawe.com
www.venngrid.com
vidacampus.com
videospiele.digital
account.weneed.ch