77/100 SECURITY SCORE

Certificate Information

Subject
CN=bot.choroshin.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 22, 2026
Valid Until
April 22, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
67:A0:F8:7B:A4:E4:00:43:75:D1:F4:9C:76:C2:BE:CA:55:03:4E:C3:4F:00:2A:69:4D:5F:E6:21:5B:6E:60:41
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
practiceplaygrow.com

Other domains in certificate

class.beta.actimotive.app
travel.agoook.ru
angelolucia.xyz
apicheck.dev
dev.arcs.app
axintesergiu.xyz
batchbee.de www.batchbee.de
engage-appdev.bethink.co.za
bristolpentecostalchurchuk.org
www.byapar.app
captaincapitalism.store
cartfuly.com.mx
bot.choroshin.com
www.ulkupastanesi.com.tr
staging.daoexchange.app
www.darksecret.io
myreturns.dpdlocal.co.uk
drckteam.kz
www.eden-studio.de
www.edsyntesting.org
www.equestrian.directory
evernest.fi
soknad.fagbrev.io
futfb.com
www.galile.io
myvaultspa.gen11project.com
qc.nurture.goama.com
gosplan.app
sheyla.test.graphite.space
www.growni.sk
haarlemjazz.nl
auth-rc.ikala-c4m.io
inorwa.com
emailsignatures.inventif.dev
www.ipray.online
www.stage-foodcourt.isthara.com
www.keepwords.com
www.lawandlegaladvice.com
app.leah.com.br
www.lisacoppinger.com
www.luisgeraldo.com
development.made.live
mariefitzpatrick.com
studiospace.menuqrate.com
mergeconflict.in
protokoll.metrium.se
michaelmaryanoff.com
dev.microtourney.com
telemetry.midaas.com
www.mistergreen.fund
mondocoolstudios.com
ishealth.mor.company
www.mrcyberium.com
mtctoner.com www.mtctoner.com
demo.sintaqu.my.id
frisk.mynexus.app
nd-filter-expert.de
neeril.com
staging.neuralpayments.com
nuestrabodajyn.com
case.olabbio.com
paragonplanet.com www.paragonplanet.com
www.passamezzo.co.uk
pebble.world
claroclub.pentcloud.com
app.leparc.photofied.tech
app.pigtie.de
www.pinningo.com
careers.pirika.app
www.playxd.co.uk
polalitravels.com
quickhomecares.in www.quickhomecares.in
badtwitter.rglvn.com
fw-versions.rideet.com
ringsumlut.com
cash.rtirl.com
sanaapesa.online
saratogadata.com
www.savoirvivrecosmetics.com
www.skylinepropertiess.com
slickbot.io
link.snackhub.eu
sortedbranding.com
stemsearcher.com
superclusterbakery.com
taifme.com
www.thebeautyofplaces.com
auth.thicc18.com
toiletswipe.com
hookipa.turnosweb.app
procountor-redirect.vilkas.fi
vishalchhatwani.com
vscanimaging.com
xpresslearning.com.au
zxcnews.com