Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.sozcuk.com.tr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 22, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F1:61:A7:F9:62:43:A2:8D:A4:7C:BB:4F:26:FD:DC:A1:8E:78:63:6D:DF:6C:C5:57:80:E3:A5:C5:0A:D5:AF:4D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
sewardpolice.us
campaign.722redemption.com
www.aajadhyakothihillresort.com
abdullahtahir.site
ukpn.uat.advanced-infrastructure.co.uk
app.alfredo.pt
algorithm-challenge.com
www.altriconsultancy.com
backstaige.tv
www.baitisraeli.com
balajiprototools.in
bloominwreaths.co.uk
dev.talking-talent.barclays.cake-lp.com
pixelycar.central.sc
jogos.cesisonhoinfantil.com
xin.clian.net
cloudiscan.com
oceanspace.co.in
vedicvilla.co.in
rir.cocinaelsazon.mx
skdb.codingscape.net
cloud.cloudlabs.com.tr
www.sozcuk.com.tr
console.creekmoremarketing.com
abonados.criollosbsn.com
www.digiadaptation.com
myreports.dpd.co.uk
www.dubaiasiacity.com
www.eastseareefers.com
www.times.edu.pl
www.eldarlabs.com
react.fabianodermatt.com
falsehood-mask.com
forsvarer.no
www.fortunapicanya.es
fosh.app
uat-s.galaxypay.vn
grantedaccessdigital.com
guitarlessonsderby.co.uk
whatis.hareketlen.com
manage-staging.homebox.co.uk
www.hp-werner.de
huntingtonatallah.family
hyperbeam.studio
icashcard.us
interlyceale.nl
www.ioun.org
jfortulinoimoveis.com.br
lms.knockbrain.com
l0gs.app
lakshmimahaldvk.com
www.lifeissimple.xyz
mm.lutz-moeller.com
macaca.games
makarios.work
www.margav.com
mastrounited.org
register.matchbox.jp
www.metamaxtech.com
ariawanwibowo.my.id
beta.myparcels.ph
teaser.mysmarthotel.com
nickkrumholz.com
nishi.pe
oci.io
topten.org.in
terre-borromeo.orpheo.cloud
eshedtools.oz-tms.com
crown.peerdustry.com
dev-imsolo.pixelteam.io
n1.popculturepost.com
apollo-mng.propo.fm
www.prostarimmigration.com
punjabgov.online
www.rauchholzlibrary.org
rcsolutions.live
assets.rodrigueverhaeghe.com
scorefeed.app
shipstudios.xyz
snailbytegames.com
www.sononline.in
www.starcitizen.gift
studio-absant.com
alpha.tartansoft.com
www.taxirodriguez.com
thelittleskool-house.sg
www.thomascarbureanu.com
ticket-to-happiness.com
invoice-preprod.tiime.app
admin.treembo.com.mx
tscsteps.org
tulikajain.me
uniteddesign.org
veduapp.store
alerts.w3lcome.com
fifty.weekendprojects.xyz
group.weohealth.app
hr.worthgrowth.com
www.yenukarodrigo.com
www.zudyog.com
Other domains in certificate