77/100 SECURITY SCORE

Certificate Information

Subject
CN=bexrx.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C6:BE:68:7C:60:34:C4:AE:D1:F0:48:46:74:FB:1C:AB:F0:DF:B8:BF:5C:E5:43:E3:C1:19:57:A6:50:22:8E:44
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
ship.dansmill.com

Other domains in certificate

www.3wordsfortune.com
me.advvo.net
agarithm.com
akashrai.me
akut-medizin.de
www.amsooproperties.com
lemonmart.angularforenterprise.com
pdf.as-a-service.dev
demeter.athenyx.com
audrey.zone
www.batchy.finance
www.beaudoinolivier.com
beecityapiary.com
bettermenu.live
applink.bevis.sg
bexrx.com
cms.blueskyucs.nl
memorytwist.bmgomg.com
www.burgerdor.fr
hagakure.app.c-rayon.com
www.catacomb.nl
chessclub.ch
www.churni.io
authentication.class101.net
mesu.co.in
bill.codepassion.co
people.moderngroup.com.my
tuber.luffanet.com.tw
refood.com.ua
danbehar.com
admin.deeddelivery.com
fb.delta.games
duartedomingos.net
temnadoba.dudacek.eu
privacy.duxels.com
biennial.ebizfile.com
app.ekselio.com
eliot-michel.fr
www.enneer.com
exsellance.co.uk
ganamas.famimas.com.co
greavergallery.art
www.gsiexpressinc.net
hubspot.harvestr.io
fleak-auth.herber.space
hcp.hosand.it
www.hotcharge.in
iamtejasmehta.com
iearn.info
jobprog.com
www.jon.nyc
www.kadh.nl
www.karimomar.de
karlqueckfeldt.com
www.klickspiel.net
owner.klubbappen.se
app.le-club.bio
www.liquidminers.com
listmi.com
zhd-group-liveqa-stg.liveqa.jp
www.majasfancy.com
jumprope.makeitnow.kr
www.metisinformationsystems.com
meutim.com
app.monittor.com
stripe-21921.moovstudio.cc
mozadded.com
mapped.myasoedv.com
www.myspacemaxcen.com
greet-chat.nibunan.in
portfolio.office-ore.net
ogenerator.xyz
book.ohmni.africa
halfilter.okgsecure.com
forest.orbitist.com
jobs.paragonlandscape.com
app.peffgroup.com
www.pesodecuba.com
mapping.pnta.de
www.pokepicker.com
www.prealyse.com
auth.receiptor.ca
au1.office.resbutler.com
sakura.company
www.scryptique.me
app.sendohealth.com
skuldpaus.se
dev.steeltech.app
www.supercoolcode.com
www.swachhpay.in
alerts-dev.swifterhub.com
www.task21.com
www.taydenflitcroft.com
www.tell-us.app
transportmybike.com
sodaigomi.vancegallagher.com
steps.visusrad.it
withhaverford.com
www.02052001.com