Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=g2m.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 02, 2025
Valid Until
December 31, 2025
52 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
92:34:5C:AF:F1:63:D3:0B:95:28:CE:EA:F1:73:B6:05:A7:8A:C4:93:97:26:7F:C8:BE:DC:97:93:3F:0B:CF:DA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
sixclear.com
staging.console.28east.co.za
www.acharyasadhandas.com
administrador.alenares.academy
arcogiftcardsettlement.com
automobiliu-servisas.lt
avante.pk
avloss.com
axelrasmussen.com
barenboim.org
link.beersport.com
bitappsteam.com
www.kojo.biz.id
wavy.broccolirecords.com
www.buycarseswatini.com
www.cheevicenertech.com
auth.test.classroomscreen.com
coderxyz.com
coffeemondo.app
ts-viewer.cogniteapp.com
convexityai.com
covenants.loan
esp.davits.page
www.denistrebula.com
dg-clips.com
pos.divana.app
www.drafteq.com
drlucaschagas.com.br
www.duh-game.com
s.st.efmedsys.ru
eventcamera.app
www.excollo.com
felicityyoung.co.uk
www.fidelituscorp.com
g2m.dev
gaetan-s.me
auth-staging.gardenr.com
www.goodsportgolf.com
www.grookeygang.com
haketech.com
hamsoltech.com
hurzlmeier.de
www.hypeatlas.com
i8success.com
imbianchinoudine.it
www.incomingheat.com
industrypropsnyc.com
www.innt.de
www.irlfg.app
istanbulafetsaglik.com
www.johnpap.dev
joinqatch.com
app.joinsalut.com
kaitours.bike
blog.ksoichiro.com
www.learndom.dev
www.littlefootsf.com
www.logprobability.com
lonestarclay.com
www.microdyno.de
dev.mindysimagination.com
mueblesbernardo.com
muzkapty.com
neelmango.com
ode.dev
omnicurenow.com
maintainer.ourpetpolicy.com
www.pasosycompases.com
periodically.app
plexusnotes.com
popthekettleon.com
tool.pre.do
procert.com
www.prowrestlingshow.com
ramtinsaremi.com
trax.res.app
blurphoto.rockybrain.com
www.rohitsuthar.com
rrgc.club
ruwanganath.com
ryanburgoon.com
app.salesforce-compare.com
sanjitraman.com
ubitrac3.savageminds.com
www.seatingchartmaker.app
sophisticatedsip.com
www.ghelere.srv.br
www.sunshinemassage.hu
sustainabilityfutures.org
tagbr.net
teachup.ge
api.techmarga.com
thecodekitchen.co.za
tubli.to
community.xtarnet.us.to
venkatesh7305.me
www.webstitch.in
www.zachsapp.com
zachsapp.com
www.zuplog.com
Other domains in certificate