Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.temporalshift.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026
58 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C4:5E:78:DA:89:5A:12:8B:B7:F1:76:0F:7C:F0:0D:02:F1:56:7B:D2:DE:26:6C:64:9A:DA:54:2B:1B:0C:A2:59
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
pronto-posto.com
10minutewait.com
admin.12sea.com
4dleader.co.uk
pods.5starbuild.net
royaltiesportal.adorando.com.br
afkar.net
descent.aldel.com
alexhilton.net
artpull.net
batipro77.fr
beinterwoven.com
blog.bobsousa.com.br
www.bravas.app
link.carters.mobi
app.cheersat7.com
spinoff.lab.cloudhomez.com
link.mobile-app.protium.co.in
spinconnect.thrivikram.co.in
frami.colouredhouse.com
coughlink.com
www.coughlink.com
pos.countaapp.com
cr4mdev.com
backend.cretenborg.com
cursedweb.com
www.dcsprayfoamservices.com
nana.deeprituals.com
purohit.deeprituals.com
devsky.org
editedbykathleen.com
dev.solar.ellume360.com
onboarding-uat.equix.app
ops.fiata.org
fixarservice.com
floofyfeather.studio
gdkh.foodle.su
harmoniweb.app
hebgehawg.com
hortenstone.com
www.hubdesk.io
www.identityarchitects.in
ig15.in
www.inspirehighered.com
ironsend.games
www.jarcon.com.mx
jasontaohomes.com
daddel.jogruber.de
www.jpcalugcugan.com
www.kaka.one
www.kiiner.com
www.knoc.me
www.lomobox-nude.art
m4-kosmetik.at
2.mapscmlc.club
marmixsoft.ro
mptindex.com
murayamakomuten.com
www.murayamakomuten.com
pic-buccone.mentor-stage.neccton.com
netifylimited.com
omniaskylounge.com
onuruyar.com
otech.events
business.payswish.in
www.pgdiocese.org
extras.picks.com.br
portpridelogistics.com
ps-c.at
connect-ng-door-to-door.rxoconnectuat.rxo.com
www.safevisits.app
xpensenx.sairaveendrakandregula.in
sawahmusic.com
cico.setisbew.nl
skeetv.net
www.skolo.dev
www.socialmediacleaner.net
solotecnologia.cl
www.soyl.one
www.ssventures.com
ssyog.in
blog.starly.io
mb-autocare.stoketechhub.co.uk
www.syscap.com.mx
tahmeed.in
www.temporalshift.co.uk
dev.thenewenergy.in
thepadelflow.com
messaging.thephoneguy.com
www.thesimplephysics.de
www.togrow.online
dev.topfour.io
www.toroids.xyz
fortiabelgrano.turnosweb.app
launch.ubunifu.dev
www.vedhasaitech.com
app.verifiction.com
vitaly.ai
vtpwt.com
wordsurgegame.com
Other domains in certificate