Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.coloradoadventurecr.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 15, 2025
Valid Until
January 13, 2026
48 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:4F:C1:E7:59:D1:C9:E2:09:20:58:00:1B:FB:A3:85:9F:32:7A:B6:7C:6B:F4:35:56:04:5D:51:09:5F:D0:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
rationalagents.com
4pics1word.app
abyto.com
alexrichter.xyz
wwtube.altalk.com
www.analytica-india.com
www.appscreens.com
athiyarastogi.com
beastsbrothers.com
www.biblioux.cl
www.blissretreat.co.nz
bluecheck.pl
gmyw.bmgomg.com
auth.boty.cc
www.calculadoracortelaser.com
candanaku.com
www.clasicarozas.com
www.codermatestechnologies.com
codinggoat.com
www.coloradoadventurecr.com
www.monihomes.com.tr
web-sentiment.consumer-edge.com
android.corntech.com.mx
atodomar.corntech.com.mx
www.cryptomas.cards
dave-astator.com
delcer.pe
douglaspossasdev.com.br
nelsons.elaachi.com
eule-elli.de
www.eveenageorge.com
fantasydesigninteriors.com
otp.favarr.com
admin.fecrip.com
portal.getskinhelp.com
glowpanda.life
www.goatfitness.com
clientes.goboxusmx.com
hamzamukhtar.com
focus-box.hcbsix.com
ikeatarot.com
extra.invue-live.com
fb.itmax.at
mycart.jakob-fuss.com
www.jesusurrutia.com
www.leafd.com.au
learna.ac.uk
learnwithdani.co.uk
anilao.legisled.com
uinterceramic-soporte.lernit.app
www.letsplay.cards
hyogo.linx.live
www.mahabernardino.com
maloriecasimir.net
tip.mcjel.com
www.mikeengforsenate2018.com
www.myeximbusiness.com
portal.carneargentina.org.ar
oi.orthotech.app
platinumasiatech.com
praderasdefrutillar.cl
ve.prymiskyi.com
rotaractmuj.in
www.showgotravels.com
staging.link.spaceflow.io
squarefoot.studio
rufanhalloffame.sqwadhq.com
sunoson.org
www.tutornex.com
test.twigbig.com
www.ujnotes.com
redirect.unfrio.com
vasundharageo.com
3d.vidhaantextiles.com
promo.voixtek.com
web.vygoapp.com
test.w-eclat.com
www.walkofwater.com
url.walkthruit.com
lock.wavenetic.com
admin.we-eats.com
order.we-eats.com
table.we-eats.com
play.weaponmastery.com
weartavie.com
webkarmi.com
news.webtvbd.com
stage.wecobi.com
dev.weld.com
wemetinperson.com
widenet-business.com
williamwijaya.com
willingcapital.com
windygallery.com
wngzr.xyz
wonderframer.com
wordslanguage.com
wpbriefs.com
xdsolution.com
www.xilver.io
Other domains in certificate