Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=osaka-bound.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 23, 2025
Valid Until
March 23, 2026
87 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:71:DF:72:0C:74:3B:9D:ED:60:A1:21:70:76:3A:EF:02:05:A4:D2:BF:F1:10:22:78:CB:4B:56:91:CC:95:1C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
reports.netresult.app
100porcentodistinto.pt
www.aadhantech.in
adanaseyhanaku.com
answerforwhostheceleb.africasunrise.com
afzalsolutions.ca
app.agendaboa.com
alba.band
alfonsolagares.com
diary.ameneko.com
www.andrew92.site
web.appbetty.com
krishnagiri.aravindtravels.in
asnfbikeparts.com
www.admin.biletdukkani.com
platform.bio-circle.be
tenant.dev.bizflex.app
push.bony.space
furl.bonzerboys.com
royalmed.braqamy.com
carbon10x.com
carniceriaelbife.com
carrickemmets.ie
chanceryib.com
chiquerentals.com
clix.app
codecanvascollective.com
wikiantiderechos.conocimientoabierto.org
www.corona-no-baka.com
dev.curlingscoreboard.app
dermocin.com
www.describedata.com
tctsl-cis.dev-ltl-xpo.com
devfagnerlima.com
dfchen.com
www.dhimasprajaya.com
v1.dipanjanpanja.in
dogmatch.me
www.dolomite.io
app.dvmplus.com
iwa.edalytics.com
moj.elovec.si
app.engineersinsight.co.uk
ethicalmind.tech
www.floracast.com
garvopanoptic.com
console.genvision.it
www.gianbiondi.com
www.glasscrafted.com
clinica.golden.services
www.goldencredit.co
www.holiapp.live
www.hy-clear.com
www.icolor.app
ifixitapps.co.uk
imadvocacia.com
imagegk.com
live.indiajackson.co.uk
api.inkryptus.com
jgehmlich.de
konstantinedatunishvili.com
pwa-stage.leseschlau-app.ch
uikit.main-echo.de
www.masch-wedel.de
www.messageofislam.org
www.moodwriter.com
app.mycax.com.br
gauth.nework.app
osaka-bound.com
www.panneaumobile.co
links.pawty.my
www.pedidoflama.com.br
owguessr.pegas.is
www.pickolo.app
api.pwapilipinas.org
quickfix.pk
lp.renansujii.com.br
app.rkvisionhomes.de
www.roebiduedingen.ch
saffronzen.me
smoothie-slide.com
umair.techna.pk
www.thendos.online
thewolfofmarketing.de
thoren.app
plus.ultipure.co.za
www.umi2u.com
lvlumber.uniformlab.net
urabereiji.com
dev.morador.usucampeao.com.br
visualmind.io
app.vodafone.hu
www.waltex.waw.pl
www.web2biz.in
storybook.wharft.app
wickedcampers.co.nz
dev.winresponse.io
xpertfinance.in
auth.yakyak.cloud
www.yieldy.ai
Other domains in certificate