77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.durrani.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 15, 2025
Valid Until
March 15, 2026 79 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
93:25:9E:2F:18:81:2A:9C:74:6D:A0:EE:75:25:55:D3:46:00:27:60:D4:18:56:77:D7:87:5F:A6:E2:F7:95:32
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
quote-dev.clia.ca

Other domains in certificate

device.27infinity.in
91clubdownload.store
abbysmith.work
admin.abouttrees.com
adagentsuite.com
www.afyaokey.com
alignedtherapist.co.za www.alignedtherapist.co.za
aubook.antechz.com
cleancore-live.apexialabs.ai demo-live.apexialabs.ai demo.apexialabs.ai
belha.ai
blackunicorn.space
brandsmonk.com
www.buddyagent.co
hosts.caazam.com
casevacanzevillaparisi.it
client1.citadel.tools
evisaconstruction.co.ke
www.compoundit.com.au
cycreciclajes.cl
www.dekorando.it
staging.djangobuilder.io
djgreet.com
app.doubleacegolf.com
grupomeddi.drtis.com.br
www.durrani.dev
www.dusha.mk
rcf.ecnet.tw
ejtiyaz.com
elgatoeugenio.es
www.enahtech.com
club.encorekit.com
erickborges.com.br
esbjergselvforsvar.dk
www.facturapido.es
flotiance.com
gatoeugenio.com
gatoeugenio.es
gravitechai.online
grootform.com
hayatulislamiya.com www.hayatulislamiya.com
helpyouevolve.com
humanosmanual.com
iamecum.com.br
staging-app.jerimed.ai
www.kadosh.org
farmer.khetipoint.com
kilitsesi.com
creative-professional.kreatewebsites.com
live.legendariosworldsummit.org
lernio.app
lilaraum.com
www.litartah.com
locator-service.com
dlmagency.madhive.com
quiz.maoverse.xyz
countdowns.maximemoreillon.com
www.measure.pics
mermaidapps.com
mireyabakes.com
misalon.misalons.com
nap.li
nexia-studio.net
nwpops.org
meet.omnomz.com
app.onedollarxclub.com
onlyszar.com
mthimkhulu.org.za
padmakitchens.in
pavelgolyshev.dev
pecosvalleyqualitywelding.com
penaki.com
picksy.au
www.pizzamomento.gr
www.rcalc.lt
rokjokllc.com
www.saveyoursalons.com
serenakim.org
easy.shareil.org
test.shoofti.com
www.siemenconsulting.be
www.simon-lindner.de
excel-addin.sparkcommodities.com
sualavadeira.com.br
systmex.com
talkytoon.com
www.taneemcharity.org
www.thedoorpay.com
thehumanosmanual.com
www.therapyinnovationinc.ca
ml.theusama.com theusama.com
valordaviagem.com.br
ampcus.vayudoc.com
visionengix.in
map.whollycity.com