Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.wordydoo.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 18, 2026
Valid Until
April 18, 2026
83 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DF:92:3C:ED:BC:1A:A4:27:E6:55:F6:F1:65:08:A7:01:FB:65:C3:A9:AF:1A:C1:D2:06:26:88:DE:E3:C2:A7:A4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
realoneaccessories.com
www.pro.2med.de
addtimme.es
aithreads.net
www.anderick.com.br
www.appmusicstar.com.br
artestore.com.br
backtoharmony.hu
www.blacksage-media.com
blueoceantradelog.com
brunocharrier.fr
beta.buzznbuild.in
www.bycatandmill.com
bylne.com
camy.cam
app.v2.dev.casus.ch
website.cfep.com.au
www.st-paulelderlycarekiambu.co.ke
www.intense491.co.kr
ravindra.codemagicx.in
cthnetwork.top
www.cthnetwork.top
daikeli.ge
admin-portal.staging.regensburg.delcom.nl
www.destinobio.com
dev1.digitoo.cz
dillydally.co.nz
app.docgility.com
www.dreamapp.io
www.fastech.edu.br
www.eventstorming.nl
www.fancyspirits.net
www.farmaciamor.es
admin.klikopago.fedinvest.al
www.firefighter.ai
shop.fresto.io
www.gelatoh.co.za
app.getlifeos.com.br
giroplay.online
app.globalrealestate.com.br
globiznet.in
gmrtech.us
goalsrush.live
www.hakkidongel.be
dev.halogrid.ca
www.hepilo.com
hugoborsier.com
irimasu.com
itwin-activate.jakarto.com
www.joshmay.digital
teamfit.karriereheld.team
kasbon.uz
lechoneraelranchooriginal.com
19.lhotatrophy.cz
naat.linkoo.sn
www.naat.linkoo.sn
luipack.com
dms.markazulhuda.in
www.medalert.online
admin.medyl.com
www.mundo-riego.com.ar
admin-smaedu.my.id
barber.storepilot.my.id
app.oktorocket.io
lk.omyvai.ru
www.omyvai.ru
q-one.performolabs.com
prerun.io
kyiv.psyhub.cloud
quadshine.com
www.quar.codes
beremese.racinsky.cz
basometro-develop.reinaldoalguz.com.br
www.renomart.com.au
site.reprisei.com.br
dev.rohitranjan.in
safehousings.com
www.es.samuelcaetite.dev
www.simplmeet.com
smashtourney.live
socialscanner.in
socratics.gr
soft9tech.com
nqe-bernin-m.soitec.net
www.sonandomarathon.com
www.sprel.io
federation.swipall.io
first.sza.ma
tekpool.dev
titanteo.com
www.titanteo.com
www.triosela.ch
uluru-breeze-gc.com
tree.useful.team
vartoulo.com
vedo.com.br
www.verifier.one
www.wordydoo.com
www.yammyjoy.com
www.zekimed.com
Other domains in certificate