Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=initialsignup.truecordis.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 15, 2025
Valid Until
February 14, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:19:07:C1:82:AC:69:CA:F9:9E:E2:80:79:5B:5C:8F:AE:EC:8F:5B:F0:AE:EF:50:B8:E0:4A:B3:F9:CA:C3:B6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
sociallax.com

Other domains in certificate

www.2dbots.com
mora.aimcomely.com
www.atlyapim.com
www.bassoimoveisrs.com.br
boollpalpites.com.br
brandonn.dev
bucketeer.io
cambiodeunidades.com
centerofmonitoring.xyz
web.chaos-control.ru
admin.realestate-saeroy.co.kr agent.szfns.co.kr
moku.corvvs.dev
preview.damart.com
darkvch.store
www.darshanelderscare.com
desenvolvedor.vip
diagauto.ai
templates.drillmaps.com
www.dsmachining.co.uk
econoinn-worland.com
faf4-wb-v2-old.sachso.edu.vn faf5-wb-v1.sachso.edu.vn gd-stem-lop1-old.sachso.edu.vn gd-stem-lop2-old.sachso.edu.vn
www.eladyosef.com
acentos.eldiario.es
christmas-countdown.fedmich.com
app.fitologyonthego.com
app.football-live-score.com
goldfield.space
auth.greetai.co
validator.hawkindynamics.com
app.helpersnearme.com
staff.hurreytech.com super.hurreytech.com
conchoconmel.id.vn
krusangtawan.in.th
jakesherwood.com
kayoun.com
cms2.kobotogether.com
www.kunalganglani.com
contracts.leanabogados.com
dev.lecoinduprof.com
training.levolor.com
linktrip.co.jp
www.littonluo.com
lojaxalingobrinquedos.com.br
mcgeary.dev
conf.meetnow.in
www.mitchellcemetery.org
dev.mozzazcare.com
www.mykettlebellworkout.com
console.ombrelleria.com
onepuppyaday.com
cpland.originsme.com
www.parkmybike.dev
parsedigital.co.nz
patymed.com
sri-lanka.pittborndigital.com
elevadorhidraulico.polipastosqueretaro.mx
fairmont.portal-patient.com
prastik.com
professionaltr.com
storage.profitableservices.com
mori.propelfuels.net
solar.pukky-it.com
puyos.im
q-wizz.com
www.quickexams.co.za
fulfyld.rabot.us
ravenousmoth.com
rcoconsultants.com
rejsal.com
reznixmynach.com
samipussinen.com
scriptmemorizer.com
m.setkeeper.com
dev.sharo.io
thomas.shopstudentstore.com
shroom.id
app.smilecat.com
sofiacamprubi.ch
stacktechnologygroup.com
taonni.com
teachingboost.fr
www.thebusinessmarketingclubmc.com
thematchcompany.com
thenxtacademy.com
ticketand.co.jp
toetan.com
trade.flex.ton.surf
www.topotech.org
clientsignup.truecordis.co initialsignup.truecordis.co
tubetimevr.com
woweast.com
zachmsutton.com
wax-testnet.zeptagram.com