77/100 SECURITY SCORE

Certificate Information

Subject
CN=uat.mis.northlineschool.edu.kh
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026 87 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E5:EA:F4:70:9C:2C:97:39:7E:F8:58:DD:73:A5:56:2A:38:D8:9F:1F:EB:97:5A:9A:BC:A6:5D:10:42:5C:8A:11
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
aumovio-verlof.nl psa.aumovio-verlof.nl

Other domains in certificate

www.2050fairpark.com
aiatelier.live
links.almastudios.com
admin.atlass.app
atm959.com
app.australgroup.com.pe
autonoma.lu
employee.bindr.ai
medici.brainyant.com
brieef.co.uk
brightpointhomes.com
bwire.shop
www.cestvs-anime.com
medinet.cirmena.ch
parkwaysolutions.co.in
sugget.co.kr
www.cosmolith.tech
invite-yollo.crio-server.com
digimall.tn
www.drsvsd.co.nz
dev.dscor.net
uat.mis.northlineschool.edu.kh
lns.elxa.io
essenenterprises.com
modernadmin.evolvision.com
farwise.com
www.galaxy.md
ghitescu.com
link.grinfer.com
links.gro.care
growthbundle.com
grupofritega.com
www.h-cap.fr
high-stake.org
hmcaviation.tr
hostalroma.com
iee.24.computosonora.com
iis-boss.com
app2.inads.ai
sumitsirpatna.indiandevelopers.org
itanomics.it
joniaranguri.com
julientela.fr
www.kelbcoin.com
kogarahmassage.au
lampovara.fi
leadfolio.co
www.leros-humanism-seminars.com
likemozart.com
staging.maplelanemusic.com
inventario.marroquin.dev
www.masterframing.com.au
www.midteideconsulting.no
dev01.momentum.earth
www.g.nakano.info
namitfozzek.hu
group.newwit.com
noor-e-hidaya.com
www.notionbee.com
www.novonext.com
www.nutriyoni.com
paphos.eoc.org.cy
hosting.stg.panda365.jp
parmardhaval.com
dev.payby.tech
www.philipmaslow.info
www.poggiodelfarro.com
cyclecount.pointstar.asia
productimgai.live
reporting.qaas.nu
rainbowlabs.xyz
registatus.com
events.rhemachapel.ca
rooted.network www.rooted.network
app.rucuru.com
link.sooszoltan.ro
spellero.com
staszek.ovh
www.stonepro.com.br
storydoze.com
streamerz.online
legacy.suan.fm
techful.jp
thecoffeeman.eu
www.thetrailer.store
triple-four.com
docs.veripaygate.com pay.veripaygate.com
wanna.today
wayalty.com www.wayalty.com
weasense.com www.weasense.com
www.bo-netzwerk.wilink.de
app.yaritori.jp
yealbumrankings.com
www.zenzy.io