Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=app.faithwaveshipping.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 09, 2025
Valid Until
February 07, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:0A:1E:A6:B5:78:9C:2E:EB:1D:4E:60:C9:3D:1C:66:F7:D9:04:96:0F:8A:0E:0E:A2:6B:DD:AF:54:E0:5B:CB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
propmagnet.agprop.in
www.ain-network.com
test.alpha.africa
www.appspectrum.in
scoreease.armid.in
www.baddel.ae
www.beldeezy.com
www.besomakh.com
bnote.app
buttermypopcorn.app
www.casaccth.com
my.ceafrica.biz
bcalegal.com.py
cooponus.com
www.denegociants.com
link.distiman.app
www.does-it-swing.com
easypie.ai
app.faithwaveshipping.com
www.fikacto.com
www.financeviktorin.cz
fomo-events.be
links.foolishspirits.com
fullbound.ai
www.gooningonsol.lol
www.growyoursaving.com
www.ics-logistik.com
fools.id.vn
lequocanh0701.id.vn
martinha.id.vn
vietdung1409.id.vn
itnc.jamaatcore.com
kiano.staging.jampad.app
firsthello.josephyaduvanshi.dev
jplisdorf.com
consepre.tjpb.jus.br
justintimer.net
info.khutlihong.dev
www.khutlihong.dev
kreativwebdesign.eu
leonardluvuno.com
l.litit1.com
magnateadv.com
testsite.mattreyn.com
mdmatkaprofessional.com
app.murcianaett.com
dev.mxdots.app
quoteskeeper.my.id
www.myordercity.com
neimat-al-madina.com
nemforms.com
nestofthorns.co.uk
neurotechdavis.com
capital.nodeshift.tech
nterion.com
nyxarena.com.ar
www.ogmentorbt.com
petalingompayberkah.com
oldsite.philsambati.com
www.pramod.dev
productmanagerbooks.com
sugasam-admin.pujasweb.co
qrbring.com
qubecv.com
rachelshooktherapy.com
rallons.fr
tome-of-arcuray.rasitgr.com
graficos.rogeriossantos.com.br
s-it.online
sanchte.com
sarahrahner.com
app.savologic.com
www.scoremystocks.xyz
scrumdojo.com
www.sharesinproperties.com
opszgnbhtbfmxfqquipg.smartimob.io
smatrix-app.com
smile-africa.com
link-us.socios.com
sense-financial.solerabank.com
somnialysis.com
app.sph1nx.com
gwathleticsscavengerhunt.sqwadhq.com
gwathleticsscavengerhuntadmin.sqwadhq.com
stickmanstories.com
school.stride.studio
taiwanmaster.net
www.taiwanmaster.net
tameshigaki.jp
tekbeatz.com
auth.snoo.dev.testflight.xyz
www.todomatri.com
www.trishtrash.app
varunux.com
versusfundraising.com
wardspy.com.br
www.wilkersonsecuritysolutions.com
app.xavelend.com
xktoancau.com
cdn.zx-adnet.com
Other domains in certificate