Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=jikyucho.templat.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 25, 2025
Valid Until
March 25, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
34:48:04:F1:78:0E:0A:19:84:96:72:C9:90:18:98:0F:86:B0:E1:B0:05:44:B9:0F:F7:BB:9E:C2:19:B4:2B:0F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
quakermaps.com
aiworkflowtoolkit.com
intranet.atomnest.com
bhasit.me
www.blacksapphiregoa.com
qr.bodytone.app
localization-dev.cdmvision.dev
ladyboss.chan.gallery
sidemt.charonworks.com
cms.sistema.cim.br
www.beyondmarketing.co.kr
portal.cobrolink.com
mebledomino.com.pl
crispcode.io
cryptoflowapp.com
curiousbk.dev
drycompass.ddrcss.com
www.deef.sk
dhappaa.com
dostavkiplus.com
jaarverslag2019.dpgmediagroup.com
www.dpgpuzzels.nl
dsheils.com
vorwerk.dynamogramm.com
minequestpro.eliasteeny.com
ezschool.info
links.fanartzone.com
finda.cloud
fishviewer.com
www.frontend-specialisten.dk
frugalengineeringglobal.com
gamecounters.com
ghosttoolset.com
hassakueng.com
okey.huseyinsamisari.com
www.iaminx.com
app.imob.kr
fittheoremindiacorp.impactwrap.com
itslakshay.com
tastymenu.jayendra.in
webconsole.jiroplay.com
kalitica.com
keepthechange.au
mta-sts.knox-consult.com
lacatleya.com.co
financeiro.ledcollor.com.br
luxaeroexchange.com
www.luxaeroexchange.com
www.metrodip.com
www.montessoriminds.org
chat.mortgagebuyersinc.com
www.mottamilord.com.br
testnet.moveposition.xyz
www.my-wish.fr
nagriktv.com
webartino.namishkumar.in
pco.nicolsonconstruction.com
ottertech.fr
baz.oz-tms.com
romeo.vm.peterjin.org
auth.dev.piclar.com
www.placementmaster.in
promptsup.com
myresourcesite.propelledbrands.com
app-wacaguas.refiltek.com.br
www.remotehire4u.com
marinahoteleslascondes.rflex.io
rini.solutions
www.rosapp.com
connect-ng-carrier-registration.rxoconnectdev.rxo.com
www.scgdigital.io
xmas-stage.seerow.ch
sendsmail.com
shubbeklubbek.com
knowledgebase.smart-operator.ai
okyhebpbpvbdwo4htiwa.smartimob.io
stereofy.com
staging.strya.co
wellamo.sunlumo.fi
supremefitnessmassage.com
live.syndic4you.be
dafa.talk2.fun
jikyucho.templat.dev
thehaileselassie.com
thewebarchitect.dev
tildetildetilde.com
timescape.eu
auth.timetime.in
www.tnsmobilesolutions.com
torusinnovation.com
bukken.v0idi.fi
www.vickyis.dev
www.viscalc.app
app.development.voicepop.de
vstkonsultacijos.lt
www.menu.weeks.com.co
www.whatmealtoday.com
wd.writerduet.studio
zenreki.social
www.zeroridez.com
Other domains in certificate