Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=cheias.luyny.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 23, 2025
Valid Until
February 21, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:DC:50:22:A4:E4:B2:DF:1D:42:D4:B2:C1:5C:25:FC:0C:D6:80:39:E4:62:5F:B1:2E:61:C7:1D:12:C9:C4:CC
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
schlagameista.com

Other domains in certificate

21interiorstudio.in
howdens-test.3dcloud.io
marketing-cloud.additive-apps.eu
api.agcs.akrobotix.com
anima-web.de
preview.appevent.no
ashamar.is
jbuild-staqing.beerlabs.com.au
www.bevelander.nl
bhavikpathak.in
app.biddz.io
www.biryanibutterchicken.com
devcoin.bizanalyst.in
www.bluestinger.org
www.cannabidiolecuador.com
dev.partners.careerbase.co
www.caroleandcolt.com
www.chinmaysheth.dev
app.cinemaswipe.com
admin.staging.cityscour.app
www.cloud7holidays.com
cloudorder.jp
store.edti.com.tw
convenmais.com.br
f.wyb.cq.cn
digidtech.in
doncado.org
www.earlypay.my
ebintech.in
emergencyprep.day
empowerconference.in
firestore-ui.com
dev.flashme.live
www.fufuinlove.com
www.gift-inc.jp
liveinventory.gofloaters.com
gofurtherconsulting.co.uk
goodshaadi.org
defisansauto.greenplay.social
register.highkeystaff.com
hilgerto.dev
www.humancloud.app
www.jacosanctuaryspa.com
jamianoor.in
nukim.jeanhumblot.dev
keppackersandmovers.in
help.loxy-app.com
lukeandlizzy2023.ca
cheias.luyny.com
www.madeinmumbai.org
mdisearch.com
widgets.dev.medapp.nl
link.meprism.com
www.meridianendoindy.com
lms-dev.mto.group
admin.mywoti.com
nickbirnbaum.com
www.notadining.com
novelhoner.com
pod.otwsg.com
prsolucionsolar.com
admin.stage.rpm.quokkacare.io
past.re-ynd.com
www.researchdatahub.com
residencekrengolama.com
www.rufus.taxi
www.sacredseconds.co.za
salonepettinemagico.com
www.santacotracker.co.za
admin.seodity.com
toba.servca.com
shahseatery.com
www.sleepybeeinteractive.com
www.smart-cot.com
smithcopperpipeclassaction.com
app.summitstproperties.com
google.auth.suncyan.com
portal.sunpeakpower.com
dev.swegapp.com
tarunbajaj.com
portal.taxsarthi.com
teatroartist.com
loop-dashboard.theloomaproject.com
www.thevufamily.com
tipgenie.com
tmhsorchestra.com
www.touchlessdevices.com
dlink.udharpay.com
droneadair.valari-dev.com
www.vikrambahl.com
pro-forecast-central-panel.visuallottoboard.com
vuontritue.com
destaat-table.waiterpro.com
wenittelabs.com
winzgold.com
what.xla.jp
pay.xwglive.com
app.zeca.ai
auth.zutobi.com