Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=program.footballcoachs.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 18, 2025
Valid Until
January 17, 2026
66 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:5B:C3:7A:88:86:6C:86:8E:CD:49:FE:15:EC:54:70:C7:04:85:79:1A:AA:28:60:7D:BB:08:09:88:A3:35:00
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
plenavidabeneficios.com.br
accumulations.io
acharyabharat.com
www.activateparty.com
adsequor.fr
agricola-agricodex.com
alfaisalrestaurant.co.uk
cao-ziekenhuizen.appdashboard.nl
master.appdashboard.nl
arithmeti.cc
www.artcybe.com
stage.astrid.fm
master.beauty-base.org
beyoustore.cl
www.blueheartfp.org
www.brooketutor.co.uk
app.sandbox.cardapioweb.com
care-nanohana.com
www.clean-concept.be
bctt.co.in
app-auth.mysecondlife.co.kr
www.communityhubapp.co.uk
carrier-dev.containergo.vn
www.cubecommunications.com.au
payments.cybermax.lk
careers.dinii.jp
doeemsintonia.com.br
labchaos.draykunstudios.com
www.dromeduo.com
ecutrek.com
academic-report.apps.ucu.edu.ua
enphexist.store
janderson.eti.br
farrokh-mansouri.com
fleetmaid.com
program.footballcoachs.com
fouzitejini.site
app.gamma.nl
www.hacomono.jp
inf-system.ru
www.jayneshbhandari.me
vusik-type.jessepinho.com
kadogu.com
stage.invite.koiniwa.jp
www.koseligerom.no
concursos.leanmind.es
get.ling-app.com
www.massagetherapy.org
www.mathiasmilsgaard.dk
www.mathshour.com
mazigma.com
www.meusociotech.com.br
squiz.mismith.io
f10.omkostningsberegner.app.monax.dk
neuralblue.com
ntsconstruction.ca
supasvelte.openfrenchfries.com
testing.order.place
pasci.li
www.pataphysical.tech
peponas.com.ar
fi-go.philipp-schuermann.de
auth.music.phonim-music-stg.phonim.dev
pro.photo.phuket.run
www.pieces.games
wartime-safety.platfor.ma
pmnlpro.pk
portstewartstays.co.uk
firesujets.prepa.io
primarycareofnevada.org
www.rapbattle.online
swap.reedukkan.com
l.reefwave.io
app.rotoql.com
signature.ruelle.studio
lucja.sapalska.pl
livetransit.sebdoe.com
mastodon.sedlardavid.cz
shenli.dev
www.siristartravelandtours.net
smart-sprinkler.de
izaxbsi66fpuzqqzbpez.smartimob.io
pdi.sprintcodes.com.br
steveg.co.uk
marvel-hq.storytoys.com
suomenpeltitekniikka.fi
syncretic.org
www.examhub.tcaster.net
tea4u.ca
hectareas.terastreo.cl
theslice.shop
www.ultimateshape.nl
insp.hosting.services.unpaidworks.com
www.utopiamedtech.com
www.vegre.no
www.vet-hands.com
app.victoriumresearch.com
elecciones27s.websays.com
www.woodate.app
xploit.world
Other domains in certificate