Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=wesasoft.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 06, 2025
Valid Until
February 04, 2026
49 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:A5:8B:EB:F0:D1:A3:C9:30:3F:AC:B7:E9:8C:28:47:BD:DA:BE:10:06:57:5A:BB:6F:FE:A3:C6:2C:12:3A:22
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
ai168.id.vn
bang020106.id.vn
hoangoanh263.id.vn
qnnguyen.id.vn
tudpit2000soict.id.vn
why.id.vn
app.astoryaday.se
beageek.org
www.bedsoflove.com
app.boxbollen.com
codebakkers.com
link.cre-sydney.org
www.cryokylmahoidot.fi
admin.lms.datonix.in
dousee.ai
admin.earep.info
equipodium.com
firstmake.jp
app.fitaacademy.in
www.flexfit-europe.eu
flowsolutions.app
links.foxy.in
www.gaborcs.com
galadiaz.com
live.gastrohome.com
rewards.gotennis.us
www.gp-florijani.com
www.gukguk.se
megajump.halfbrickplus.com
www.halpp.me
televets.herdman.in
horosage.com
hvogroup.tech
hvsl.in
www.jdchoi.com
jiyabharti.com
joose.dk
admin.jambi.kindergym.id
kiranfurnitures.in
sjdwmms.kro.kr
www.lubulwa.com
www.lucasross.dev
www.maplearningacademy.com
www.trivia.masjidtech.org
www.minidose.net
moperating.com
www.musaozkan.dev
berita.kitaro.my.id
diagnosis.myhabits.health
novaforgedev.com
www.oisted.com
trichy.onewaytaxiwala.com
virudhunagar.onewaytaxiwala.com
free-stock-search.pixelsucht.net
atable.placed.eu
s-dev.poppic.cam
proposalsjs.com
seller.proxtera.com
psi-komnata.com
www.publisheasy.net
quikkle.com
www.rebit.one
reg3sign.removis.jp
rufarogaridzirai.com
www.salemhandmade.com
saunapark.pl
www.saunapark.pl
search.scottwittrock.com
semiringinc.com
navtest.sentrex.com
server-watchdog.com
dev.sharendipity.com
softstackdev.com
www.sohobyte.co.uk
sonicmelody.com
elms.synth365.com
4c.takaramap.com
quynhhoa.tattyhouse.com
tawarjit.com
theneotek.com
www.therarebanana.org
therekha.com
platform.thesocialhandshake.com
auth.titletab.com
scopeprogram.totsguide.com
trange.sa
treaps.com
tyrescare.in
usairsupply.com
vega-dev.site
pnp.vellby.com
verisku.com
www.via1actea.com
aap.vojtechstefek.fun
wanderlume.com
watergeltopspendersxyinwar.com
wesasoft.com
lost-in-translation.whywontit.work
wingpatch.com
xeend.com
Other domains in certificate