Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.lang-en-gelukkig.nl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5A:33:3C:50:0A:38:34:B2:E7:78:1F:0E:7E:95:B4:BC:80:ED:CB:6E:A1:EF:D8:47:CF:0B:6A:B2:CA:43:25:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
karur.onewaytravels.in
ramanathapuram.onewaytravels.in
lukestaging.3diq.com
99reminders.com
www.acroeverywhere.com
connect.adswerve.com
instant.aetautomotive.com
allenbestcreative.com
amiloz.com
www.anooppatta.com
www.arasteknik.com
aravind.uk
www.asavchenko.com
lms-alpha.autoconvert.co
pkmn.ayaspace.co.uk
games.betterdrivingtheory.com
boobietaunt.com
cinqtortues.com
live.clarah.dk
admin.clix.app
www.closedbrackets.com
support-bk.cloudmile.vip
clout.art
sidc.com.tw
comm-tool.com
creativepermaculture.com
preprod.crewdle.com
damntechnologies.com
www.day-trading-that-works.com
ww.w.divshot.com
djr-taureau.com
auth-staging.doctempleapp.com
e-graft.com
easier-care.com
www.easier-care.com
www.echalecanela.com
exxoninfo.com
5th.fcis2023.me
funmoney.hk
gabrielbarth.com
gameplanmastery.com
www.gateway-english.com
www.givechuckajob.com
l-qa.goalbud.org
grapetool.app
www.greentekenergy.co.uk
retail.live.growflow.com
hewizo.com
dev.heyleap.com
hypyr.io
warehouse.mminhdev.io.vn
jerkjamboree.co.uk
juliogf.com
www.kama.co
kardesleryazilimdokumhanesi.com
kedotaoperasiabadi.com
nichicrm.kuritofoods.com
www.lang-en-gelukkig.nl
logixpie.com
dev.app.lynxai.tech
www.midwestattic.com
pep.minhacentralonline.com.br
projects-ft-tech-radar.internal.ml6.eu
mustafacot.com
om.mytc.work
naturalisation.live
nm.io
www.nvdr.space
owlsector.com
j7mobile.piticommerce.com
www.planetapelicula.com.br
pracakomisja.pl
lnk.projectexist.net
www.regsco.com
ryan-zhou.com
saianandfarms.in
pass.scoutpig.com
snypra.co
www.snypra.co
www.sousvide-guiden.se
spanishwithana.ca
app.test2.sparxteaching.com
streetquest.co
adc.swapptechs.com
www.tabacchirun.it
tabledecoratingideas.com
tecwebdesign360.com
app.textwith.us
corporativo.tierracervecera.cl
www.trackerbuddy.io
unconventional.bio
app.integration.upbycellance.com
web.vankit.app
v1.agent.videolink.app
www.vieetudianteacademielafontaine.ca
admin.watchcomedy.live
weplaygames.in
efc.whyq.com.au
link.xenia.team
rifas.zencillo.biz
Other domains in certificate