Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=venturiengineering.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
62:F7:27:90:4D:0C:34:0C:A6:82:2E:FC:7F:F4:9E:2F:0A:A1:E3:34:72:70:93:D2:B9:03:50:F2:98:9E:5D:AF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
sgomberoalloggitorino.it
portal.4elementsmusic.com
flexpay.acceede.com
www.acecityaoa.com
links.afrosaude.com.br
www.alawwahouseplans.com
www.amaroute.com
link.americanmilitarynews.com
amyalmazar.com
developer.siyasat.andresito.xyz
availabilityfinders.com
battle-energy.com
beehivewindowcleaning.com
bheemalingam.com
www.blate.app
brightstdio.com
www.broadwaylive.net
buckbukaty.com
byperion.com
pro.calizy.com
www.cancees.com
www.capsol.us
signup.cbreenergy.com
www.cirrostyle.com
www.classical.io
vecloud-staging.vechnology.com.my
www.singaporelocksmiths.com.sg
crystalskymultimedia.com
cygnus-aisp.com
daily-kids-activities.com
www.dcnw.de
devtobook.com
www.dictcp.men
dilim.dev
dlls.co
admin.dnlogis.vn
edomap.com
eds-air-technology.nl
eleganzahomes.co.uk
endenitechnologies.com
foodist.studio
www.futurwud.in
devfest17.gdgmalaga.dev
genderle.com
pronto.godo.is
clients.gouach.com
devvisite.hausvalet.ca
dev.herohtar.com
creative-demo2.hisy.in
staging.app.hoofbid.com
staging.inboxpro.io
j-m-m.ch
www.jcurve.app
kevinlazich.com
www.kontra5.pl
go.lstoday.net
majlisku.app
hoitod.mapleworkspace.com
maxapps.com
backlog.mobilesys.com.br
share.moodwork.co
cf-muscle.moov.cc
www.mrc-assurances.fr
nanimonodemonai.com
asset-manager.360pass-qa.nextome.dev
health.novax-it.com
nrs.sa
cp5743635207290880.order.place
www.outdr.app
www.pling.app
login.pramukhmoneytransfer.in
marmotas.queliga.com
ray-li.net
ririkoito.com
roska.gr
sakadai.xyz
www.senthurbalajicrackers.com
paintpong.skorepova.info
res.smtagent.com
manager.sooneat.com
sqre.io
steveford.codes
www.super8gainesvilletx.com
www.swap.ninja
tandiscapital.com
www.thecruxfirm.com
hkvbs.timeline.click
www.toleria.nl
www.toofareastbarber.com
images.tourdepiste.com
www.unapam.com
www.vako.dev
vanuatuearthquake2024.info
venturiengineering.in
data.verdin.pl
www.villanovacamps.com
www.vrmmo.win
vrcenter-004.vrplus.info
www.wott.in
admin.ybcannabis.com
Other domains in certificate