Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=phinance.philwc.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 25, 2025
Valid Until
December 24, 2025
36 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:E1:11:3D:02:13:E3:69:40:53:80:00:24:99:C2:B1:A7:8A:49:33:76:27:E5:17:A1:D7:62:82:F4:DE:12:F9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
softwarehut.io
partnerdemo2.app.1on1navi.com
www.aafpets.com
web2020-development.ackee.agency
www.alphanumeric.agency
link.altrgo.com
antonlicht.com
app.askclass.com
app-staging.aurorabysigholm.com
bastiendupont.com
bb.blackboxvantagens.com.br
brunchycafe.com
canyoningmarin.fr
dev.app.carmigo.io
website.cfep.com.au
ckucera.com
www.classroomsolution.app
cloudtells.de
mentor.oceanacademy.co.in
www.bellissimosalon.co.in
www.computeacher.in
console.dealpath.app
clinical-trial.dentalxr.ai
diegogabbi.com.br
www.discoverycancun.com
www.drop.quest
duodata.io
chauthanh.ebot.esoft.edu.vn
admin-portal.eduling.org
elgherbal.org
www.epic.so
admin.exceededa.com
f3morris.com
app.fadoi2024.it
farmakim.com.br
loja.flowpodcast.com
familieconvenant.flynth.nl
friendlysoccer.com
share.getallium.com
glamourwigsbyariella.com
go-my.app
goodgiving.com.au
www.hagaloencasa.co
hedgehappy.com
status.hellofresh.co.uk
hthsolutions.be
www.inbalancebody.com
www.inboxmedia.in
pokemonpaginationscroll.jaalorsa.com
www.jaspero.hr
jeruzalemeindhoven.nl
legacycue.jjglobal.in
www.jlrsddkey.com
jm-eventsystem.com
www.jorgecamse.es
juweliershuishenkbraam.nl
gpss-wb.keshif.me
app.kgnot-app.com
www.linkagebrands.co.za
blechteile.lst247.de
markgerharddeleon.com
app.messbechern.de
mindofmatthew.com
yap.mutecode.com
www.storepilot.my.id
mybakery.fi
marketing.myhomeclub.co.za
retenedores.mymoons.mx
bahrain.nationalday.ai
ebptracker.newgen.co
dashboard.mpro.nos.pt
auth.notefuel.com
www.p2pdigital.com.au
personalityfrictionpointquiz.com
phinance.philwc.dev
play.pingoo.app
predixmarket.com
admin-panel.us-east1.qlub.cloud
sso.ramp.com
rentoffers.io
revisephilosophy.com
www.paco.rocola.es
grsl.rxurl.in
sample.audio
sco-bo.stg.shippio.jp
admin.ucsa.sportkit.app
account.srvpls.com
suff.sufftopia.de
talk-room.com
music.tanndlin.com
thoughtify.training
dev.tilicho.in
test.timetip.app
tolga.app
www.valcomsa.com
besports.wearena.eu
www.witideal.com
genius.xilerth.com
www.zersey.com
www.zipdatapi.com
Other domains in certificate