Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.locumotion.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 28, 2025
Valid Until
January 27, 2026
78 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:42:B8:D0:56:32:6F:A9:2A:17:39:9B:2F:14:16:AF:0C:12:F8:D2:AE:12:60:A2:B7:D5:61:07:E7:57:79:1D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
seaprojects.theseabay.com
events.abto.app
accentrenovationshsv.com
acglglobal.com
www.amyryan.dev
link.appfontmaker.com
hospitality.archermalmo.com
bhave.nl
camerondaycustomwebsites.net
app.cartasquentes.pt
app.claimback.org
www.reshef-kitchens.co.il
brotherhood.bikers.co.ke
download.codewiki.app
draw.cyberhaven.dev
cyberhms.com
www.dialinespresso.app
app.dinnerfamilias.com
blaster.doonies.xyz
drop.supply
www.colegiointeramericano.edu.sv
appai.elscx.com
admin-demo.ethiochereta.com
www.excellentchinesedrimnagh.ie
farmaciasettimomiglio.it
farmy.life
floorwise.pro
catering.freshstop.fi
lieferdienst.gastronaut.ai
goseet.com
gosnowstorm.com
www.habitfivepercent.com
www.harshavaliveti.com
www.heeraclinics.com
veas.hkoil.org
www.hoatuoithuynga.com
app.hummingbirdtech.com
billing.irecman.com
nmn-lp.it-beaute.jp
its-jo.sh
jakefeldman.dev
jonasl.dev
kintab.se
www.korean.tools
examencomplexivo.liidutpl.ec
www.locumotion.co.za
longanespa.com
phasesofthemoonpro.m2catalyst.com
admin.matiasrivero.com.ar
dev.secretsanta.mattpeskett.com
app.midiamarketingtecno.com.br
go.mvpmailhouse.com
bolusiliwangisidoarjo.my.id
www.myblockchaincorner.com
mychannel.live
mykytadeyneha.com
mymusicmetadata.com
www.napelembalaton.hu
nayansir.com
www.ningenet.com
www.novasoft.tech
www.nullflip.com
app.passpass.io
pg-consulting.jp
prizenite.poptacular.com
auth.qoodish.com
logisticsmgmt.rcloud.dev
redsea-vn.com
rileyandlaura.com
founderconnect.sanidhya.in
secondshift.io
employee.spadeservices.com
splendo.health
wmuhockeyscratchgame.sqwadhq.com
docs.stechsolucoes.com
www.steepdeals.com
dev-admin.stereotheque.com
stockholmapnea.se
thegrant.app
alumni.theharvardadvocate.com
thesourcesays.com
app.toglon.com
www.tpmusicgroup.com
plus.traitstack.com
www.tripleadesign.in
trustacks.com
trustmakine.com
app-dev.ttchof.de
www.ummertaahir.com
next.undock.com
www.upliftgroups.com
verbalhero.com
drivers.viggo.com
www.wearltc.com
webvideoplayer.org
admin-alandskortet.wntr.app
www.spintoearn.work.gd
yasodha.in
www.yazanzaid.com
www.zenokoller.ch
Other domains in certificate