Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.hiitclock.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 19, 2025
Valid Until
March 19, 2026 84 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:BA:AF:49:32:50:7B:43:0C:98:9F:CF:DD:86:C4:D0:87:0E:C3:EC:9D:BE:22:F1:22:6B:57:6D:04:36:17:A0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
rdq.cz

Other domains in certificate

a3medical.org
www.acuajardin.com
ai4beginners.pro
dufryapp.appshare.com.br
www.aromach.me
arrivage.pro
www.web.astage.org
at-port.com
shop.blaze.cc
cablingo.com.au
calendar2022.com
carson.lol
www.certificawp.com.br
cisstech.fr
investnorthmacedonia.ada.chat.codewell.ai
www.energodosvid.com.ua
dev.auth.creasepro.com
random-draw.damiencaron.fr
dmp.hk
efecapital.com.ar
installer.ethosmobile.org
xyt953.eu.org
signering.fagbrev.io
fasatec.eu
fencecalc.pro
base.firesite.io
funmirror.lol
goldilocksearth.org
gregoireweber.io
habittree.xyz
enrollment.hicham-baali.me
www.hiitclock.com
ig-roding.de
auth.innopip-dev.com
inouttechnologies.com
r.intercityd.com
inthava.dev
www.iptvsubscription1.com
uniben.dev.portalcliente.izii.io
www.joshgodinez.com
staging-portal.k-9apps.com
contact.stge.keap.page
kitespy.com www.kitespy.com
biv-predev.klarway.com
www.latiendathriftway.com
staging.layer.team
site.revonote.milicone.com
www.minexcon.com
cookbook.mitbrille.de
mobispace.jp
next.myfitworld.net
www.mytenants.app
narenwagh.com
beta.noca.me
noesarte.com.ar
www.nomorecoverletter.com
app-dev.nounceapp.com
www.onchipproducts.com
onecall.one
www.ozlemsimsek.co.uk
p-itsudemo.jp
www.pablosanzmusic.es
link.pakrism.com
app.parentco.co
www.parksidelego.org
office.philipmathen.de
gpstracker.pirotech.fr
planetventura.com
playproductions.co.uk
prototipo.info
pumpit.space
wappdirect.queensherainfotech.com
creator-tool.realworld-one.com
www.reliablefireandsafetyconsultancy.com
admin.riverlion.es
rm-can.org
roulobets.com
app.securelogs.com.au
staging.servizio-sinistri.it
siddur.one
stage.redpanda.caregiver.sios.life
sortis.solerabank.com
solutiontrail.co.za
www.swecc.org
synth.sk
survive.sysgaming.dev
www.techstuffandsuch.com
techynerves.com
bio.terraflorens.com
theshmedia.com
fingerpainting.touch-less.dev
delivery.tropicalpizza.gr
analytics.ttvtools.com
www.tulisiat.fi
verify.walkingmonth.ro
wijunkremoval.com
youbeads.com
www.zion-infotech.com