Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=tsvunterhaching.bfsp.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 26, 2025
Valid Until
January 24, 2026 54 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4C:A2:F6:C7:CC:22:23:73:A5:0B:C1:13:6A:AC:4C:60:38:23:19:F9:DE:F8:98:AF:B8:9D:E2:86:32:89:38:B2
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
screensyncer.com

Other domains in certificate

staging-3diq.3diq.com
actify.cz
www.aledesignvfx-studios.com
www.alextomkins.ca
alvaro.948.es
amelhormaquininha.com.br
www.arrowords.com
gas.astar.network
atacadaodastintasgyn.com.br
admin.axarda.com
tsvunterhaching.bfsp.app
landing.dev.brd.so
www.buildingrenovationsolutions.ca
bytr.xyz
www.calonic.com
ceroc-adelaide.com.au
todo-li.charlie-richardson.co.uk
citypublicschool.in
www.cloq.app
www.clubqvt.com
staging2.coherentpath.com
colordesigntool.com
haberajanda.com.tr
www.crowsfootball.com
d-ploy.mx www.d-ploy.mx
app46.dexper.io
covid19.dwarfstar.co.nz
iccasa2024.uem.edu.in
www.elrincondesita.com
links.enerbit.app
data.estabiom.pl
www.excelexercises.com
app.fastgig.sg
www.ficalapps.com
firth.cc
fishky.pl
fiskarasklaipeda.lt
fittracker.app
static.friedsynapse.com
gcrealty.co.za
staging.getmibo.com
gezhang.com
the.guid.party
aidan.hemslo.io
hospeasy.com
imaginasheen.com
hub.inselo.com
integrityautophx.com
www.shop.it-karl.de
kevinvuillemin.com
khosrowshakibai.com
kisfeszek.hu
kamera.notifications.kohl.app
kol-kol.de
kspbijadandi.in
www.kubedb.com
pesquisa.lojavirtual.com.br
lookatthismenu.com
srigayatri.macademy.in
home.mafgames.com
www.manglishcsi.com
dev.mdptconnect.com
medbillingdegrees.com
myconsult.play.medeintegra.app
metdist.com
mooney.news
sample.msoler.dev
auth.naranggo.com
nathan-morrow.com
www.nuboservo.com
links.qa-milestone.internal.onduo.com
www.ongboonloong.com
p123.org
www.raspsolutions.com
www.rehabway.com.au
savitechllc.com
admin.sawaapp.io
www.scaleknot.com
www.signayes.co.za
sitapp.app
www.superhandyhome.com
beta.synthfeed.com
www.szabomartin.com
app.tellusdata.com
my.eu.ternary.app
triedstone.ca
wodcrossjm.turnosweb.app
medarbeider.ul.no
parc.valpas.ro
www.vase.fi
developer.vetspire.com
auth.vinnie.app
waslast.de
watchtube.fun
www.xaxistarts.com
yogalomoments.com
yottabytes.ai
www.zwolsnienhuis.nl