Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.pierre-bocquillon.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 23, 2026
67 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:35:89:28:57:5B:50:8D:CF:5E:E9:EA:69:C2:76:D9:A6:7F:4A:24:DA:33:25:EB:2F:43:39:7F:AF:37:26:04
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
portal.lode.one
3druk.io
ahmetyb.com
akaitori.info
e-embed.almeraim.com
dev.painel.appjusto.com.br
www.ashishsoni.ca
askalyx.com
www.atomcode.co.uk
blog001.autoarticles.net
bdpdc.com
www.belamondo.net
www.boltavenue.in
www.bostoninsight.com
bwgnyinterlimited.com
www.cajubrasilfoods.com.br
calebouellette.com
new.calibre.com.au
cando.consulting
chubbysolutions.com.au
www.clintonwalsh.com
www.halfland.co.in
lola.co.ke
cosfinity.com
commitmentwizard.csforall.org
cutcomment.com
www.d1fan.com
shop.deliours.com
sym-ensemble.dev-ltl-xpo.com
devcastellanos.com
dibsorder.com
cooking.digu.io
hawthorne.district.chat
dougheyedbaker.com
drw.ink
salarycalculator.ecare.nl
app.exerscreen.com
fami.ai
ff7e.com
fichauxarchitecte.fr
geosanplagas.cl
hantus.se
hungkikim.com
auth.ight.io
qualification-de-ag.input4you.be
itspuppettime.com
joyof.travel
payblue-apply.k-lab.io
claim.kawaii.global
kevinbouzidi.fr
biv-dev.klarway.com
pubkey.l3x.in
www.larskuijpers.com
toyama.linx.live
lowelogic.com
mandalart.me
mandlowitztraining.com
dashboard.max-index.com
app2.maybehungry.com
microplastic.io
www.miguelpires.com
mlba.io
www.neemed.org
www.nexusweber.in
onehyphen.com
ascent.parkalot.io
www.paulglover.net
www.paxocare.in
peresordenieto.tech
www.pierre-bocquillon.com
piggyride.org
en.tokyo2020.pirika.app
piyelabs.com
www.porinhaka.fi
happy-house-cleaning-service.preview.prosmeethomes.com
app.qqlink.net
recexchange.co
qr.resourcify.de
nameit.sallmedia.se
panel.samneat.it
scooree.com
showmesuccess.us
slidesync.app
www.smartcat.tech
projects-dev.sohersabim.com
functions.sparkboard.org
www.sqa-io.com
www.strifehomes.com
www.tecquiver.com
game-of-life.tonstube.de
tradingview.to
transportes3hmedina.cl
www.traveldoglabs.com
www.tuayudacuenta.com
www.vanny.com
vault.verivault.net
election.vote62.com
app.wingi.global
youniscademy.com
www.zubairghori.com
Other domains in certificate