77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.kpidash.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 21, 2025
Valid Until
December 20, 2025 37 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:C2:2B:FB:2B:E9:F9:62:BA:1C:A7:5C:19:70:6E:CF:B3:2C:71:86:E6:A1:7B:1D:DE:65:D6:0F:F0:31:C9:44
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
screenbox.ozbot.si

Other domains in certificate

jeboconnect.28east.co.za
www.4mat.co.uk
aansit.co.za
colex.aimcomely.com
www.ajdjsocal.com
allaboutgrowing.com
app.anroco.art
arielgelbard.com
dash.atti.city
beauhaan.com
students.bim-app.at
www.binfieldkitchen.co.uk
l.bkkio.com
shehryar.bokhari.de
strava.brompton.com
docs.app-staging.c-rayon.com
carpiomusic.com
omnichannel-test.cenhud.com
cevin.us
app.chatbotcreator.online
cloud-it.com.ar
carpetcentre.co.ke
curiculo.live
dakumisu.fr
rebocar.dcws.pt
delightgames.kr
depfinfinance.co.za
devstork.com
studio.dstteam.com
eastboundmedia.ca
anblaundry.easybus.app
ssa7.eestec.ro
egemensanal.com www.egemensanal.com
eleculator.net
fineswisswatchrepair.com
focuswithdot.com
freeiching.com
freshandbestcafe2.com
www.exsys.geek-salon.com
www.gezery.studio
www.gife50.it
www.globalveterinaryconsultancy.com
sketches.harryminsky.com
www.heartwoodtrading.co.uk
auth.helloskip.com
homeworks.it
platform.aiwa.in.ua
iretiolafoundation.com
jellyfish-social.com
pwa-test.johnshortland.com
kachila.com
www.keyspace.in
www.kpidash.io
hint3.ktw.jp
www.app.la-vocal.com
www.loganhead.net
masteritlearnonline.com
localiza.mayamovil.com.mx
mbingo.app
medicosabordo.com
dominos.megapos.store grillish.megapos.store hardeez.megapos.store khansspice.megapos.store mariospizza.megapos.store megamunch.megapos.store nandos.megapos.store pizzaisland.megapos.store
www.myanmarchit.app
mygolfevents.ca
videocall.mymoons.co
gek.oviedo.pro
mondossier.passnaturalisation.fr
www.personalovertagande.se
www.reachfashionstudio.com
www.redonionworks.com
cms.seussibles.com
www.seutecnics.com
shreelakshmicabs.com
slickhouz.com
www.sparsh.app
sugarcupgames.com
superexcelvba.com
app-test.swisseconomic.ch
tarsi.io
tasidou.com
admin.tcmhack.in
develop-owner.tipxy-now.com
ventas.tuticketnet.com
www.tuxedolab.com
office.typex.kr
verfidaccount.com
platform.vibepay.com
vindecoded.com
www.chat.vyeron.com
westneybiblestudy.ca
wolaexchange.com
www.wservicew.com