Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=centurioninfotech.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 04, 2025
Valid Until
January 02, 2026
50 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:2C:89:2E:2D:74:3C:68:F0:96:31:08:DF:82:A1:4C:FA:96:93:10:60:26:72:F0:27:4D:97:04:5C:36:AB:B4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
puravest-app.com
www.aivocal.app
links.apexpay.org
www.arastusystems.com
armat.dev
app.bahriaplus.com
www.biederbuch.de
bienapp.me
app.staging.blockbasis.com
www.bolella.com
pick.bracelit.es
calculmarge.fr
www.capitalhillbarber.com
www.carniceriaelbife.com
centurioninfotech.com
sangsangtoreal.co.kr
affiliates.prottoy.com.bd
www.compramostubarco.net
auth.dandelionenergy.com
davidfontenova.com
selflearning.deeniyat.com
www.deepseafire.com
donatas-luciunas.lt
web.dubliveaudio.com
trafficlights.duncm.com
app.e-vadea.fr
elizso.dev
login-dev.fielder.one
glemmo.nl
dev.dostavljac.growtovchani.com
auth.hawkeyes.io
app.hemisphere.digital
www.holidaysexpress.co.za
www.integrals.nl
dashboard.invenzi.com
sitegov-hmg.itransparencia.com.br
jasonmeng.xyz
www.juvenilejusticeproject.org
leaguelink.pro
legalinnovationcouncil.com
www.librolibrary.com
www.demo.lifeschools.ca
sales.lunexpower.com
w.massage.org
meadlight.it
medimystery.com
stjean.megataxi.com
www.merchant.minilemon.com.au
jobs.miveratech.com
mspicher.com
dashboard.mxre.dev
myclubuv.com
mycmetrack.com
nathanrapp.dev
app.notedojo.com
auth.nucalm.com
oarfragrance.com
www.orryfinaltouch.co.nz
outreachmantra.com
panelrambok.hu
parthpadhiyar.com
links.paymon.io
app.phojoy.com
invite.pixz.io
www.praanya.com
www.prism-mongolia.org
www.qurankarimhub.com
plus.refquest.com
immoxx-db.rekida.com
rjchavezphotography.com
nightcube.roembol.nl
www.roninlombardino.com
sabdiamonds.com
scenes.studio
sexyangry.com
sharespark.org
www.siddarth.xyz
simplecleaningsolutionsnh.com
misterauto-app.speakylink.com
stock.sreerams.in
stayfaded.co.za
workalone.steinbach.ca
suitebrains.com
sullivanexcavatinginc.com
celinanate.swanmoments.com
app.talentmapper.io
taphy.com
tarunaru.com
app.teamdralan.com.br
tech-lily.jp
tell-us.app
trophyrail.com
upcastsoftware.com
www.visionpentecostal.com
ch5.writerduet.com
wterka.com
www.wwurdle.com
jessup.yaatly.com
www.yonimoonyoga.de
www.zwifthub.com
Other domains in certificate