77/100 SECURITY SCORE

Certificate Information

Subject
CN=secure.abi.ai
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 26, 2025
Valid Until
February 24, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:A2:B4:0A:97:79:C4:64:4B:2E:9E:64:20:4B:6C:6B:A6:14:8D:E8:2F:B4:67:13:92:83:5D:94:E0:A3:A8:59
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
precheckout.firstchoicepos.com

Other domains in certificate

0xcaf2.app docs.0xcaf2.app
secure.abi.ai
link.agrim.app
test.auth.amarti.app
dev-phenov3.anuvabio.io
www.aquariusbeauty.co.uk
www.auditoriumvinovo.com
open.bancodelsol.com
bijouxartigianali.it
www.bitte.cc
carewokx.com
chancellorpoopypants.com
chanddelore.com
checkup.christus.mx
thebiography.co.in www.thebiography.co.in
cocukkulubu.com
go.connorwhitman.com
www.coronaee.com.mx
www.cybermeet.me
dbh-gaming.com
invite.deton.no
disruptorrecords.com
app.dockx.be
dominicancollegecamps.com
app.ebkar.io
www.ecircuitmania.com
elcaleb.com
www.epic.systems
www.erikritter.io
www.eunoia-montessori.org
www.fairy.world
app.farmly.id
fireline.org.uk
fornever.de
ptw.fritscher.ch
tools.furkanarici.com
www.getbrickwise.com
admin-api-staging.getcubo.com
authorization.firenotes.gocloud.link
goescompany.com
www.going2newzealand.com
www.goldwhiff.com
fb.idaas.app
www.ignium.co.za
app.impera.swiss
primarvard-sormland.infosynk.se
www.nimagen.innerbuddies.com
mloz-id.input4you.be
led.iotproject.pw
www.jumbofun.fun
www.junglesweets.com
www.kameda-hi.co.jp
link.kamikiru.jp
www.karakose.me
www.keris.agency
stg-portal.koesokki.jp
konami.codes
kunath.co.nz
account.staging.labolive.com
www.laguiadechiclana.com
lakonewaytaxi.com
www.leqvio-locator.com
resource.libacoffee.com
madeformefashion.com
mafingo.com
makisoftware.com www.makisoftware.com
marinazanardo.com.br
miguiasantillana.com
mlblog.dev
mobiilirakendus.ee
farms.nexent.dev
vipinkhandelwal1.okvk.in
shop.omniscient-app.com
building.outravibe.com.br
www.pedicure.hu
pglnx.id
www.plzenskybarcamp.cz
rikaayin.com
link.rosteroo.com
www.searchtundra.com
sfmb-foa.com
www.skratchdot.com
www.skypirates.us
econ.spectacledev.com
app.staging.sprueche-app.de
demo-stage.stellium.life
stonksroyale.com
cms.supercolor.sk
www.tabletopmusic.com
tulukapuntotigre.turnosweb.app
auth.uxquran.com
vibertech.com
www.altajir.withorca.com
wybro.com
admin.xkpg365.cc
admin.yourprep.nl