Open
Cached
·
just now
89/100
SECURITY SCORE
Certificate Information
Subject
CN=manager.sooneat.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 08, 2025
Valid Until
January 06, 2026
52 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B8:92:DC:E0:5A:92:06:E2:1C:E6:8B:EB:26:3B:CC:2D:54:8C:0C:9B:64:F3:75:18:26:DB:F7:02:5A:70:FA:C8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Basic
img-src; media-src; script-src; +2 more
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
puiatti.com
4-20.io
abderrahmanemazri.info
download.active-framework.com
www.adominguez.dev
deep.agristart.in
lmstest.aifer.in
developer.siyasat.andresito.xyz
anujandemily.com
ap-chip.com
chatgbtuat.appskoko.com
awaretips.com
bagofloot.net
practicealert.projects.barbenheim.de
barredsd.com
bigcreekbarkery.com
boardcrusher.net
boommakina.jp
boruatinhthuc.com
mcskinshop.chililisoup.dev
collegedick.com
operasyon.alphaassistance.com.tr
www.cremawork.com
www.derin-yilmaz.com
dianasea.com
diit.nyc
www.dishes-app.com
dronotech.com
edactiv.com
ensinoai.com
entregali.com
evirtualinvestments.com
learn.evystage.dev
spectral.partner.felporgetve.hu
flr.fndrsng.com
www.furnaceassociates.in
www.ganderwa.dev
bi-analytics.garageplug.com
pros.gaston-services.com
go.gofoto.io
gregoireimber.com
account.homenetmentoronto.com
humankind.ooo
find.igorcaldeira.dev
www.imagoballonger.se
ipx.finance
www.jakesmd.com
jirettai.com
officetowerapp.kaishing-china.cn
www.love-testor.com
mixedbyjo.com
omkostningsberegner.app.monax.dk
www.monsta.land
www.mtn-events.com
mybrary.fun
myoneai.app
auth.mytio.ch
staging.mywnetwork.com
biran-pattern.neko-cheese.app
nrs.sa
nyhetonline.com
oiltrails.ca
chat.omnince.com
stapf.onceaccounting.com
community.dev.ophelia.com
p44.io
passvarsel.no
www.pastlife-test.com
dev.clientes.petroil.dev
pizzeriacasablanca.com
www.professormarcelo.com
qafcom.com
rarefishmarket.art
www.rikikun.com
stage.rxurl.in
www.sagekloud.com
sakadai.xyz
booking.scmelb.org.au
client.senseteq.io
maths.shackfrere.net
shikshawelfare.com
endpoints-v1.signage.ninja
docs.sippy.cloud
demo-ter.smartof.app
snowyapp.in
somaterapivet.com
www.sonihimanshu.com
manager.sooneat.com
uqam.spaq.com
sportfaralimite.ro
www.swap.ninja
thegreenlinks.in
www.thetechbuzzwords.com
apps.tracksidereg.com
tonystarkwinbee.ufaeasy888.com
www.unatile.com
vidimycity.com
www.wordblitz.de
wzvsn.app
zertthecreative.com
Other domains in certificate