Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=admin.cigp.ch
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 22, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1A:10:5A:91:29:34:28:28:08:52:1A:75:31:C9:72:3E:B4:65:46:25:72:2B:74:57:0B:CD:76:50:DF:98:DD:80
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
remedi.app
www.adanaseyhanaku.com
roomplanner-test.afw.com
share.airly.com
ariyalur.akdroptaxi.com
www.alexiakattah.com.br
www.alva2.com
andreeasiradu.com
scorebuds.anne-elise.me
lb.au-vu.com
audivision.in
fb.ayyam.com
text.baenetworks.com
www.bandbi.site
whoa.beetek.net
pay.billmybank.com
bloombawarchi.com
portifolio.boginni.net
bookameetingroomnow.com
campusapp.io
www.casabne.com
cephasresearch.com
admin.cigp.ch
circularseguros.com.br
codecontrol.io
colin-riley.com
collectoral.com
www.plot.commutedavao.com
coupon.compositecomputer.club
pilot.conferonline.co.nz
contextaware.com.br
creators.site
prod.ascotgroup.on.decisionrules.io
www.retailers.designideas.net
reverselookup.dreamteam-apps.com
eat-halfway.com
elearningipev.com
devwork.elevationai.com
v4-web-sdk.gassets.emarsys.net
factoriesinspace.com
www.fastbudget.it
www.fastcurveservices.com
fctech-inc.com
forvandle.com
froggy-studios.com
ginalne.com
mijn.hallovriend.nl
ingreso-egreso-app.harrylab28.com
quickticket.inaffect.net
influx.coach
order.ivalyu.live
izyourlife.com
www.janvriezen.nl
jwilbert.com
ech.kiana.io
knowbetterhiphop.com
www.lambda-math.com
talenthos-performance.lernit.app
letswimm.com
linfieldstables.info
mayasaba.com
mithibaitechspark.in
demo5.mmevent.no
jobs.myitcluster.com
www.mypawtners.com
nexan.org
www.nooralmithaqllc.com
nysdesignandengineering.com
digitaljourney.phtourism.com
www.prointerns.in
r-systems.ltd
r2-immobilien.at
gamechronos.r3alityprojects.co.uk
l.rakuna.co
resumit.cl
romanyefimets.com
rsaucedo.com
runiac.io
samslogix.com
scent.salon
www.slowfactorylabs.co
dice.smartorg.com
epp.socalert.com
buy.spineblox.com
trainer.minaj.sportkit.app
www.spotribe.jp
knotsoflove.stlln.com
www.syamu.org
reg.tacnote.com
tholf.org
www.timefor.co
titeosoft.com
vmp-dev.travizory.ch
get.trybe.fit
ttplayers.com.au
type-fu.com
w4nn4cry.xyz
witheverine.org
ch.writerduet.com
zuziai.lt
Other domains in certificate