Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=naoumatik.ly
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 27, 2025
Valid Until
February 25, 2026
79 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:8F:9F:38:CF:86:FE:02:F9:B0:81:B3:51:0A:5A:14:15:34:7B:32:D7:C3:4D:E4:E9:D5:2F:EE:AE:F3:3C:D0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
serenice.fr
activecircle.app
activecircle.in
activecircleapp.com
foodcalc.acze.eu
advocaciabressan.com
admin.agendanupcial.com
ai-wrappers.com
www.alxios.com
bedirhangoker.com
www.ben-budde.de
blossm.garden
app.booknito.io
breakingoodworldwide.com
partner-demo.buildwealth.in
spinwheel.buyonegram.com
qlcv-dev.bxtp.vn
cahskco.com
www.carlopezzotti.ch
app.carship.be
casa-de-la-dunare.ro
www.casa-de-la-dunare.ro
qnipsgastro.cateringportal.io
www.centralphotography.co.nz
chrismoroney.info
auth.class-cloud.jp
clouddest.com
bo.clubup.it
www.denis.by
devalv.com
hero-routes-nereaguerrero.devbeebit.com
stafko-nereaguerrero.devbeebit.com
stafko-rck.devbeebit.com
www.dodraseva.com
dreamers25consultancy.com
droptaxisalem.com
dash-dev.dwellful.com
eastcoastaquascape.com
ref.econia.game
edevelopersworld.com
www.eduprivate.com
www.embednotes.com
app.epegawai.com
www.equestrian.digital
esprons.casa
app.flokon.ca
www.frchomeimprovements.com
glensedi.com
www.globalinsurancebp.com
globegourmet.fr
gspteck.com
app.handyestimates.com
hoyapass.com
id-gateway-qa.ideacloud.com
impawsibleimpressions.com
connect1.investpack.in
crypto.izacpeterson.com
kbc.edu
lamnea.se
innsyn.lcx.no
lingaatoursandtravels.in
www.ltsolutions.com.br
mariasdrivingschool.com.au
monpita.com
www.mycoordimate.com
devtest1.signup.myjobscorner.com
naoumatik.ly
auth.stg.ogam.ai
dashboard-test.omega-house.com
www.online-buchungskalender.com
parcelizer.com
ponchapp.com
promptatlas.io
qoopons.com
passta.qranoko.jp
www.r1dstack.com
emt.schuman.io
www.selinsrc.com
sfmtools.com
dashboard.shapshapbikes.co.za
shopfreefirevip.xyz
www.sketchthat.com.au
ht-formations.smartof.app
www.solotecnologia.cl
stefpires.com
terranovakennel.ca
abitikku-versions.testausserveri.fi
www.thewip.work
thomasclark.page
buy.tocowarranty.com
admin.traderinmaking.in
www.trymatter.io
therm-liner-service.uhrig-automation.de
unstop.live
utsuktcm.in
vansiii.com
ozzieducationgroup.vic.edu.au
youssefmohamed.ca
map-addin.zendu.one
my.zymono.com
Other domains in certificate