Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=skoryk.nazarskrypnyk.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 23, 2025
Valid Until
January 21, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
80:48:41:26:26:43:32:4F:3E:E0:B7:B5:39:25:AE:69:EB:53:AA:51:74:00:6C:43:0C:31:8D:42:4C:25:10:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
sem.siapco.mx
42tango.com
aghithni.app
arquivos.altforce.com.br
apartamentoslabarrosa.com
live.argos-solutions.io
artelelektronik.com
pro.auxilia.cloud
ukmotorcyclesparts.banjobolt.co.uk
url.biancalapuz.com
public.blseclub.com
apps.booklazy.org
www.borderinteriors.com
www.carahiggins.com
www.causewaycoaststays.co.uk
toscanab3.cbros.it
chathamroom.com
parents.classroomhub.app
www.happyzavr.com.ua
communityconnect.scot
commutemapper.com
crypto-or-not-crypto.com
www.ctrlxcode.com
auth.datahen.com
www.dearsinatra.com
detem21.cz
uat.digiqc.com
driver.movie
app.dev.dronelink.com
dzienniczek-wyproznien.info
www.e-binder.ch
earbud-finder.com
www.evalli.fr
pay.fetchpet.com
filipwolanski.com
find-internships.com
fiterasystems.com
joanne.frankmonaghan.co.uk
fynking.com
goktepelojistik.com
app.hoteldieng.com
app.ilovefailure.world
bandos.impresarioinc.ca
inapp.one
www.interim-cfo-cs.com
www.ipbatossjc.com.br
jamku.app
jdtpoly.com
joeliang.org
donations.plex.jomartineau.ca
kalpa.no
lamasat-meimarea.iq
loverock.com.br
lumigraph.app
luukkonen.cloud
cms.mammacheapp.it
manifest999.com
sgic.marcafranca.com
www.medocyte.com
miguec.com
docs.modalai.com
candidate.morwils.com
hr.morwils.com
uiux.morwils.com
link.mujer-financiera.app
skoryk.nazarskrypnyk.com
apps-link.nexquare.io
staging.ai-agent.nival.me
res.owlgrid.com
palavreio.app
www.peacebox.app
penzionnauboci.cz
auth.qrcoupon.app
redactrn.app
remotegrove.com
ripixel.co.uk
roas.cz
www.roppong.com
sambarbershop.it
saparodia.store
shreyasshack.in
stalaverse.cn
stockforecast.de
tog.systemdesign.no
tenforty.app
www.themeparkslive.watch
theotcmarkets.xyz
therhythmlabs.com
thespiceclub.in
www.think007.com
www.transport-bidegain.com
turnitinaidetector.com
vestergaardkramer.dk
app.vocagame.com
homegauge-portal.warrantysphere.com
woffice.app
www.wrongtaste.com
xiaolingapp.com
zachariacurtis.uk
zatori.ai
Other domains in certificate