77/100 SECURITY SCORE

Certificate Information

Subject
CN=template.app.servicekudos.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 09, 2025
Valid Until
February 07, 2026 70 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2C:E3:A3:90:3C:0A:DE:29:0A:A6:43:FB:FC:61:FF:99:DE:6E:44:8C:F4:BA:42:B3:F7:29:CA:9A:09:A4:14:68
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
pre.estumomentu.com

Other domains in certificate

dmgt.akhilpawar.com
www.akshaybadgujar.com
idify.akshr.in
www.scan.alliedwellness.com
www.alloatech.com
cdb.ashmil.me
astro71.in
bodamartaysergio.info
cafenook.co.uk
gcp-us-east1-16.dev.app.carto.com
console.chaurasiaaditya.in
www.constructdatabase.com
www.contabilify.com.br
dreamdroptaxi.in www.dreamdroptaxi.in
www.dropmecalltaxi.com
www.ecounselingconnection.org
eddywithay.dev
app.electobot.info
operations-develop.electriphi.dev
blog.espireads.com
www.estudioconus.com
app.everspring.app
shape.dev.everywear.com
frame99.in
gzg.fsv-aptor.com
jyothsna.gbnsolutions.in
www.goodpointsglobal.com
www.goose-arch.ru
app.groupthing.xyz
qa-api.guustav.com
www.harrisonkain.com
www.hillmetalcorporation.com
minhhieucv.id.vn
auth.imagecortex.com
imaginharia.com
iu2bc.com
www.jakesphysicsnotes.com
www.kaichef.com
kawaguchikobeer.com
www.khauho.com
kiblerconsults.com
pwa.kirbyfoods.com
farmer-dtm.kisannetwork.com
www.lichenlogic.com
training.looker.com
lottiemary.com
magalybelmontes.com
www.mangoorpapaya.com
map-shaped.com
www.me-overseas.com
mentorher.in
mosaiken.es
me.naresh-kumar.ink
nationaldebtcare.com
www.niradiamondjewelry.com
nirvanaaura.org
nodesai.de
www.olenasaki.com
onoctopus.com
paipoojaghar.com
pamorenergy.com
peaceberg.com
photoshot.me
aletho.profuzzy.com.br
rafiddaoud.com
portal.reactbh.org
www.reeducarapsique.com.br
resrom.com
www.rezaplus.com
gambling.schabanak.com
template.app.servicekudos.com
sharedholidayhomes.com
sheheryarfakhar.com
shopfigure.site
shreekrishnna.in
www.sli-assessment.com
www.smile-africa.com
spurintel.com
www.sunrisemedlab.com
theaurem.com
thebascostory.com
thedentalgarage.com
thefreetoolchest.com
theyoungsphere.com
thinkmosaiclabs.com
www.tlb.me
app.trakkassets.com
www.tree-of-light.co.za
staging-danapoint.trueomni.com
uptoyou.kr
news.venturecircle.io
werise.it
immobilier.wery.io
xtable.tv
www.ycryptx.com
zenreki.cash
www.zeropointo.com
zinyskin.com