Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=vamora.store
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 25, 2025
Valid Until
March 25, 2026
70 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:5C:DE:90:70:9C:FC:06:A5:2B:5A:4B:D6:B8:BE:DB:05:5C:57:AD:04:CC:53:06:C7:F8:93:AC:74:F9:A7:14
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
psikologevim.com
30seconddocuments.com
www.act-law.com
preprod.admin.ag-kiosk.ovh
www.alexandrugogan.com
allayselfcare.app
share.alnk.co
ordini.aniplast.it
anne-kanns.de
anonimbaba.com
karur.aravindtravels.in
chepai.autobid.com
api.beersimpl.com
bettersense.io
minesweeper.blessingbox-ai.com
checkin.pet
cilingirbey.com
hrap.cizonet.com
rcb.com.ro
crushersquarterly.club
auth.chat.daybook.app
delta-consultancy.org
www.dltime.domotic-lab.it
www.ecorely.com
www.edgrowj.com
elementalexperts.in
www.ella-pan.com
emorypuritytest.com
envirosoch.com
capital.eztable.com
www.fairflightprice.com
fanatiqtrivia.com
fixmerchant.com
harmonie.flitter.fr
www.gantercreativos.com
getpetdesk.com
global-cyber.club
www.gruporybco.com
demo.happily.ai
app.heyjom.com
hiitrain.com
www.incritech.com
dpc.industryrockstar.ai
schools.informma.com
innsync.innlab.vn
acceptance-id-aghc.input4you.be
kostiantyn-iryna.invito.link
staging.app.iqtalentx.com
ismael.dev
jlrspace.com
jonryanedge.com
www.jonryanedge.com
kassandratech.ee
eopdevapp.kbcinc.cloud
keasy.online
kentafukae.com
formue-qa.knowledgebase.no
kuntfoodsafetyconsult.com
www.kuruvi.club
lindsaykemeny.com
lokalcode.com
melanietorre.com
meteriot.fi
michellevue.com
velo.mjczlin.cz
musik-total.net
nguyenngochieu.info
novelcodes.in
nutrizioneandrealia.it
observantmusic.com
orderahead.menu
arab.org.bd
www.paragon.plumbing
paslee.com
r.pb-femtech.jp
www.pensioenbijarbeidsplus.nl
plumes.co.za
pressance-arge.com
primedenglish.com
testing.projectocasta.org
refi-watch.com
www.riype.com
smartcricket.com
fake-oidc.solo.io
ghelere.srv.br
sp-partner-qa.steadypay.co
www.steelect.com
strana.cloud
forms.sunachiru.jp
www.tammotion.com
theundarkpixel.com
traveltical.ca
link.tri4.com.au
www.unleash.com.br
vamora.store
www.walling.app
www.wealth-mentor.app
websai.me
company.develop.wowworks.ru
www.wrongmore.com
Other domains in certificate