77/100 SECURITY SCORE

Certificate Information

Subject
CN=violette.sk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026 38 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8B:D2:14:74:46:65:3D:06:D8:8F:26:B6:27:11:0B:85:15:26:C8:86:65:F8:F3:37:2D:5B:D1:07:91:68:DE:86
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
shindan.carry-up.com

Other domains in certificate

academix.dev
www.aoeu.com
canaldedenuncias.atuzcorp.com
bettercollab.fyi
bricks.bierbot.com
www.birtha.dev
brettstoddard.com
buengobiernoeintegridad.com
byvseguridad.com.ar
ceresec.com
charuinterior.com
to.moreden.co.kr
www.kulturajanda.com.tr
www.constructorespositivos.com
convertyourphotos.com
cosmohub.in
lope.cruzroja.es
www.cucyclists.com
buzz.dailyspikes.com
millo.djohs.de
minutgov.eabsen.com
login.menteslibres.sanluis.edu.ar
elpwifi.com
mobile.quallogi.empite.net
www.etiosaobasuyi.com
ex-hyg.fr
www.filipesousa.dev
g25pulltester.genesiprotection.com
onboarding.getvelai.com
www.handoff.xyz
www.holzer.in
www.igpeek.com
tko5.impactwrap.com
countdown.apps.in.rs
kasumi-sou.biz
kbosc.kro.kr
customer2.ktytech.com
www.kvadrant-invest.ru
lambaba.com
www.leadershipdynamic.net
www.leija.se
invite.lensdistortions.com
www.lienanimal.fr
linis.app
lynxnunkima.com
m.medvidi.com
app.mindsync.fit
www.app.mobile-studio.de
www.moonlama.com
gift.myd6sho.com
newartisan.it
www.nfcsystem76.es
www.niryassa.com
www.oddpleasures.com
ohalloran.dev
olkunarewards.com
oloruntoba.dev
align.opper.dev
owlatom.dev
poddytrain.com
staging-qrms-ext.qburst.in
cms.quizness.dev
admin2.raveretailer.com
sandbox.riskrdy.com
safend.in
shambhuamitabh.com
srikandi.sitikhadijah.com
smbaiges.info
www.spacepapi.com
share.squareart.dev
stingersnft.com
dash.sudonum.com
admin.tedaarik.com
share-staging.therecspot.com
demo.thetislive.com
thewill.dev
thomas-and-daniellas-wedding.com
www.throttlecapital.com
www.todochambas.com
tokkou-no-haha.jp
cv.tolacika.xyz
english5.toptabula.com
torquepiling.com
www.totterdownapothecary.com
www.tshikhambegroup.co.za
uplift.uk.com
vahaka.com
www.vendaslandingpage.com
dev-vr.versitasoftware.com
vinayakenterprise.in
violette.sk
verify.vipdesk.com
test.wehoz.com
whooming.com
winstardigital.com
yourcaptainslog.com
zach-alexander.com
vault.zenfun.app
partner.zimlala.com