77/100 SECURITY SCORE

Certificate Information

Subject
CN=scientistsmagazine.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 18, 2025
Valid Until
February 16, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C6:9B:DD:68:06:F7:48:F9:30:C1:0A:23:63:03:4F:B3:64:C5:E8:41:46:FC:68:7E:D4:88:8F:1A:3E:00:62:E2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
scientistsmagazine.com

Other domains in certificate

adendev.tech
www.alexshi.me
order.allnimall.com
alonregev.com
www.apizf.tg
artman.io
attainconsult.com
new.avecplaisir-zuerich.ch
romleborg.axellundh.se
client.controladoria.beehus.com.br
www.beymax.in
library.brainvest.com
uitzendkrachten.cao.app
supporters.charitysuite.uk
chocoworld.site
dynamic.gabrielo.cloudns.cx
www.archiverse.co.kr
codepushup.dev
bunangames.com.cn
www.oferta.officeathome.com.pl
expotep.com.tr
www.corperate.ng
ctech.id
prod.decovry.com
app.digame.top
eng.mc.din-mel.ru
controlpanel.efficientsolutions.com.mx
mpa-ehs.elsa.sg
links.enakpedia.com
www.ethicalclean.co.uk
www.fast.ma
freestyle.gamma.fayd.app
fitnessbymatt.ie
brand.fuelservice.org
test.funs.app
www.geo-strat.net
ozone.gps-india.in
www.guandolo.com
or-lab.hcaceres.org
www.hugoborsier.fr
vucongdanh.id.vn
www.inmediatadatabreachsettlement.com
andrew-lena.invito.link
link.ioupie.com.br
link-dev.itsnoon.net
bamx.jcmn.me
www.joensuunlentoasema.fi
admin.bb.knotta.ru
www.lei-koder.se
booster.lexing.tech
www.liquortracker.com
www2.marvelous-consulting.com
www.mayodia.com
www.mfood.app
upgrade-qa.migolink.com
misaki.nl
app.mivie.com
miplan.moons.pe
www.musicplace.app
muvafile.com
www.myepick.com
opensource-qa.myvaillant.com
nefrolog.com.br
rain.nutrien.app
platformpioneers.com
www.ppamc.com
console.qbuild.app
qhora.com.br
studio.rebalance-center.com
revenswan.science
robohop.eu
nexo.safetytools.no
second-chance.app
en.app.sently.io
shipgrantlogistic.com
golang.source-fellows.com
auth.scrolly.speedernet.io
www.spencer-settlement.com
scmconnect.successmore.com
swoop.games
pesquero.tcontur.com
www.technomappi.com
booking.the-private-spa.com
www.toursategypt.com
tralog.info
truonglaicantho.com
wellbarre.turnosweb.app
app.thrive.uk.com
www.untaggable.info
www.ventbudeng.com
www.vidyaportal.com
toyota-embed.webfootprint.co.za
wecount.app
www.wey-yu.net
app.windowsandmore.ro
share.wowssb.com
ai.yathit.com
www.zeiton.com
staging.zhylar.com