77/100 SECURITY SCORE

Certificate Information

Subject
CN=app.kidolaa.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:A7:E7:89:34:7B:63:4A:67:5C:43:44:A4:49:DA:A0:C4:04:32:36:34:A9:0A:14:98:D1:5F:CA:C7:25:FA:1D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
plangenfeld.writerduet.studio

Other domains in certificate

11521793.ivr-platform.com
11521903.peerly.app
reinofloral.adparis.es
www.apoathome.be
fa.energia.app.br
artom.app
astasystech.com
nft.athenas-capital.com
www.atirenovationjeancortes.fr
portal.author.io
autowass.com
benefitfinder.tech
90to90.benny.id
100plus-admin.bf-sauna.com facility-console.bf-sauna.com
widget-sandbox.billmybank.com
bitchbarometer.com
www.breakinworld.com
pinou.castang.net
www.codefix.be
colorgraphyapp.com
defensasonora.mx
alexlester.deltavel.com
www.denttop.com
dev.20170915.micondocr.com
digiseres.com
admin.dlchub.io
dreamlin.info
staging-internal.driftly.app
widgets.duckytest.no
ajial3.ehjzny.com
emiils.com
fast-chat.app
react.faunotech.com
orion-auth-stg.febrafar.dev
filmpalette.jp
staging.fixily.net
floralarts.de
www.fosterate.com
disjin.gather.sh
rh.elsalto.gob.mx
www.hackathon.li
www.hcordigital.com.br
hfxlabs.dev
www.ideamakersinc.com
in-sync.by
indyvanoijen.nl
nqvuongdev.info.vn
internal.insiderpie.de
www.janzi.de
kasoft.vn
app.kidolaa.com
grace.kunath.co.nz
www.lightweight.app
www.matthewbitter.com
eli.account.mirageid.com
register.atlas-apps.mit.edu
auth.mythosmanager.com
app.nesswell.com
blessingsky.okanohikari.com
trichy.onlydroptaxi.com
www.parlanceapp.com
passwordtester.org
rustdoc.penumbra.zone
www.philsde.com
pixieart.de
www.preronaindia.com
pulsomusic.cl
link.dev.quedemi.com
www.roprdr.com
russellsun.com
www.sa-hi-si.com
apps.sagolink.com
sambarbosa.link
schsnhs.com
sedlis.dev
www.seeport.app
snaphy-official.com
www.softparity.com
sonofinance.com
srs-admin.statueofequality.org
steelsingularity.com
editor.subhub.com
console.swipedrinks.app
www.syncglob.com
creator.tamasha.live
fb-stage.thegamingsociety.com
tulpie.app
tuqirism.com
www.vchaann.com
vdjgo.co.uk
claimsclipping.visual1.com.au
vitabilanz-arburg.de
wargaround.com
weighttrackerdaily.com
weimagineer.com
admin.whitbeybailieproperties.com
youreagenital.com
docs.zerofy.net