Open
Cached
·
just now
93/100
SECURITY SCORE
Certificate Information
Subject
CN=invoise.primosa.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 29, 2025
Valid Until
March 29, 2026
75 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:2F:C0:21:F3:AA:96:67:83:C9:FB:43:4C:CB:A5:7F:63:02:9B:FE:69:93:23:64:A2:43:05:77:0F:2A:4D:E2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Basic
default-src; script-src; style-src; +8 more
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.gstatic.com https://www.googletagmanager.com https://apis.google.com https://*.google.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; font-src 'self' https://fonts.gstatic.com; img-src 'self' data: https: blob:; connect-src 'self' https://*.googleapis.com https://*.firebaseio.com https://*.cloudfunctions.net wss://*.firebaseio.com https://api.mapbox.com https://*.tiles.mapbox.com https://events.mapbox.com https://fonts.gstatic.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.firebasestorage.app; worker-src 'self' blob:; frame-src 'self' https://*.firebaseapp.com https://www.google.com https://*.google.com; object-src 'none'; base-uri 'self'; form-action 'self';
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
geolocation=(self), camera=(self), microphone=()
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
regioexpress.lat
bud.3rm.fr
ontology.acomagu.me
wheet.acomagu.me
agrosafran.com
ai-synapse.org
fungus.allesbunt.ch
anywheremed.ph
app.saude.atla.pro
badomimarlik.com
www.bardibasdigital.com
boligassistent.no
www.browserfocus.com
www.byondfx.com
callforhelp.co.uk
testusdz.cmouse.app
kidsattractions.ynet.co.il
www.liquourlogic.co.ke
www.codesharkai.com
collegeclub.io
swipe2date.sameerlamichhane.com.np
der-pate.crime-cases.de
www.daebaktongsin.com
www.deepransom.com
test.chargepointgrants.dft.gov.uk
divyanshvijay.in
www.drvikramaditya.com
echoscams.com
www.energia-siedlce.pl
www.esgie.com
familiphonecell.com
builders.flowco.com.br
gbridges.app
globalgors.com
www.haffe.fi
curator.heny.app
nguyenduykhuong.id.vn
portal-bradescard.inter.mx
www.jamdesignsalterations.com
admin.jdla.org
webcontroller.jiroplay.com
jobprefer.com
admin.kabadmandi.com
www.kangacoach.com
www.karanmishra.dev
www.kingfishercc.co.za
auth.legacyoasis.uk
www.lorenzobaratti.it
www.meergraph.com
meetmaeva.com
metsights.com
mjdispensary315.com
www.neuroamar.com.br
nevansgibson.com
actions.nology.io
admin.northfi.com.br
www.ntcmuhendislik.com
beta.palmexus.com
beta-control.picks.com.br
pilapptes.com.ar
www.pointseasy.com
invoice.primosa.in
invoise.primosa.in
prototypekit.com
qalames.com
www.qubic.market
xldor.nullpro.qzz.io
rafsoft.com.br
book.appt.rapo.app
lp2f.resperate.com
app.restok.cl
www.rudzani.tv
www.sandbyrum.se
palace-staging.scouthub.app
serverlessworkshop.dev
vtc5.simpliroute.com
www.smartcineplay.com.br
speech2subs.com
spirus.app
spotted.gi
staging.sspnet.nl
bodafatimaynestor.swanmoments.lat
development.tadaexperiences.be
taiga.fit
payrollv2.texcloud.app
www.therockies.es
tintpreneur.com
www.touchingtheart.app
www.tripeo.app
adroguerunning.turnosweb.app
payouts.ufunded.com
2025.ulsteinsf.no
www.usac.app
v2amdischarge.app
www.vashongo.com
recorder.video-recruit.app
www.voloventures.co
tetroblocks.vshyrochuk.com
www.waxvm.com
zanegrowth.com
Other domains in certificate