Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=private-ai.forge-3.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 03, 2026
Valid Until
July 02, 2026
64 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:85:E6:B1:2B:EB:54:6A:16:B9:85:6C:BC:26:14:E6:49:13:66:E8:EB:FC:30:6F:99:4E:F0:34:C1:FF:C9:68
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
shop.polustechnology.com
calculator.3dmyk.com.ua
www.alexnilsson.se
alchemy.andrevandam.com
asdfg.kr
track.b-store.co.id
www.bodasusiymario.es
bolaopro.net.br
www.bolaopro.net.br
sitefacilja.bossawebsolutions.com.br
time.caitchison.com
staging.portal.camino.solutions
centaureducation.com
nexusdocs.rancher.cloud-h.net
hema.devarajan.ai
bairo.digitalethos.consulting
status.divshot.com
drktechinfo.com
www.ercmed.com.br
faithandspirits.com
www.filesion.com
a0f9.foodle.su
chronos.foonish.com
private-ai.forge-3.com
devfest.gdgauckland.nz
www.gjktfaith.lat
www.glashuset.nu
gopherchina.dev
hcordigital.com.br
oauth.infans.be
www.inkomenslastentoets.nl
www.jalapenolabs.io
airsidetest.joaoptrindade.com
www.jreauto.autos
support.junban.jp
www.kutu.online
www.lbvfamily.com
leader-delivery.com
dashboard.lionleadrealestate.co.za
www.mabucket.com
mahjongsheet.kr
masjidops.com
meetoomeat.com
scs.mlk.my
www.mykifaa.com
app.nezashi.jp
www.nezashi.jp
novahaz.hu
reviewform.openreview.jp
www.ormebikexperience.com
app.orthotimes.net
www.pagexray.com
rc.pappstor.com
peerlet.com
cuisine.phenom-ideas.com
www.pianogogo.co.kr
pomorskidom.com
www.poppiccamera.com
staging.online.posbel.be
staging.sce.posbel.be
admin-test.privemd.com
puntuz.com
qeuegames.com
www.rachafacilapp.com.br
radiusoftruth.com
www.regastone.com
trivia.retsymedia.com
link.rifzki.my.id
rocketfulfillment.com
safi-eg.com
sandyridgefarminc.com
savicloudtech.com
sevenstarspirit.com
auth.preview.request.shimejis.xyz
minis.shubetech.com
www.simersoft.com.tr
app.simkada.id
simkada.id
spatial-t.com
spatial.film
stream-team.app
www.stream-team.app
www.sviatkuzh.top
basometro-develop.taniafruchi.com.br
swap.techeasyit.com
admin.teddmegadd.hu
thecorbys.au
tomchris.com
tommytong.lat
www.tommytong.lat
uniqueminds.com
upctp.com
brainspark.upcult.nl
urbanatlas.ai
auth.vadekon.com
www.verticecloud.tec.br
app.logistica.waylogtech.com.br
www.welix.ai
assinatura.yourder.com.br
app.zenhouse.com.br
Other domains in certificate