77/100 SECURITY SCORE

Certificate Information

Subject
CN=preview.vaultigo.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
81:04:A1:24:BC:7F:FB:23:5A:01:66:7A:2B:B8:DF:AA:06:A8:DD:E9:A2:5B:91:0C:E2:E1:DC:1F:61:30:07:CF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
preview.vaultigo.co.uk

Other domains in certificate

startup.1cubatech.fr
a24design.com
aaronbarge.com
abetterdomainna.me
static.3rdanniversary.ac-pocketcamp.com
adalve.com
alexrueb.com
www.alleeco.com
alsregistry.org
amanaasia.com
s.artfulagenda.com
platform.baseval.com
www.beyondcloudtechnologies.com
contracts.bisflow.io
bizdisha.com
www.blockbrickbreaker.com
v2.bridgevds.com
human-in-the-loop.bytez.com
app.campocontrol.com
www.cardealimoveis.com
checkout.cloudchinese.org
colordrop.app
www.colourspassion.co.za
cast-dev.tvbanywhere.com.sg
sanitariaoceano.com.uy
colaborador.copacol.com.br
crescentloom.com
cuppettpsychology.com
democratsforkamala.com
loadoutdb.devipotato.net
juno.disperze.network
www.distrisuper.com
carcodes.e2community.org
web.eabsen.com
dl.elebne.com
android-support.emula.pro
essensone.com
fearless-security.com
fotosdeotto.com
georgiubrothers.com
links.getbounty.co
www.gitdailies.com
beta.gpaelevator.com
haaminust.com
haaswebservices.com
www.hatchmatch.app
ideas2024.org
ideas360.cl
imposotor.com
registre-preprod.monjuridique.infogreffe.fr
innen-interiors.com
iveritra.com
app.journalofgeocentriccosmology.org
www.jthrupppainting.com
keynah.com
konkurse.co
letzgoland.com
liquidityrise.com
www.luke-hickman.com
web-manager.manuelpurizaca.com
www.metabolismoysalud.org
mjolna.com
mktsrc.net
www.moduslogic.co.uk
app.mooche.co
www.mrctransport.com
myfitnesspage.co.uk
nambinarayanan.com
wallet.novila.xyz
justfreshecomm.omarica.com
onthepodtoday.com
cp5714623357517824.order.place
comunicacao.libcom.org.br
orthopowertools.com
www.pomorskidom.com
www.psychotherapie-eisenach.de
app.qbuypanda.com
raicoolingtower.com
rajasekharan.com
www.revli.co.uk
sandsfp.com
shwegps.com
www.snowsafe.at
app.sovoro.kr
splay.io
www.spleeter.online
stitchvault.app
ka.sulhnu.com
app.talii.co
tamioengineering.com
d.tenxor.sh
thelovechecker.com
typeful.fr
www.unrest.dev
www.unucr.fr
www.vaultomb.com
vedacomputing.com
www.vishnusanthosh.com
admin.preprod.weezer.fr