Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=links.live.karkinos.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 24, 2025
Valid Until
January 22, 2026
70 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
47:56:62:BE:67:B5:E1:DD:AE:07:21:30:D4:1B:81:09:6D:15:41:16:B9:29:09:5D:7D:79:68:62:A1:D5:71:99
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
smudge.app
adelicieux.fr
anujawagh.com
dpla.appvisionaire.com
balajiinternationalgarments.com
barlink.co.uk
www.blacktalentleadership.com
www.bluesigning.com
game.bonusskate.com
www.broadband-go.com
bus.so
www.castcast.com
chazzanocoffeedefender.com
chungportfolio.com
citylet.com.au
staging.compensate.com
corinne-robichon.fr
www.curionative.com
devrodriguez.com
dieteticsrefill.com
app.digitalbroker.io
www.dojangkkyaegi.app
security.ebstrade.com
www.ergoappstore.com
www.explorelogy.lk
docs.fictioneers.co.uk
www.figureoutgame.com
firsttimehome.net
fitwala.com
invglobalflux.fluxometro.com
gismatrix.si
gmilgames.com
www.goodstuffbook.club
auth.hiring.express
huwamai.com
www.huwamai.com
url.imploy.co
khaosat.inbot.link
auth.innopip.com
www.itclub.lk
jordans-store.shop
karakhub.com
links.live.karkinos.in
karmuh.app
www.kemecuador.com
kmcat.uk
qr.konstantinedatunishvili.com
labelers.ai
larryaasen.com
login.launchpad.fit
leapfrogr.com
lettucech.com
www.linxiz.com
portfolio.maripi.net
meenakshifoods.in
mesafcrit.in
www.migration.investments
tempisaweb.mohesu.com
moodnavigator.app
myhappinessteam.app
pro.mymilyapp.com
neko-cheese.app
nekomi.app
neoengine.net
nileshraneofficial.in
www.nneil.com
nooralhayaatraditionalmedicine.com
auth.nozzle.io
scan.optel.app
paldecks.com
www.pcmaniave.com
pontishub.com
projectcapsule.me
www.prometeu.cat
www.pung.me
rajfacilitiesandservices.com
museumplatform.redia.dk
rera.farm
dev.sago-hub.com
www.samyata.com
www.scorelytix.com
manutd.scouthub.app
seanroshan.com
swing.sedayu.one
shrwalk.com
plny5t88o3zyaof3oetm.smartimob.io
dlk.smarttoollex.com
www.speakrandom.com
terminal.squadra.work
vtechtrivia.sqwadhq.com
react-staffing.staffshift.com
sunnovishealthtech.com
virudhunagar.supercabs.in
www.swservice.biz
tails.wtf
toomoosegames.com
www.tzell.net
vaastuelectrical.in
www.vrouwenrijschoolgroningen.nl
zoebeggelman.com
Other domains in certificate