Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=phinance.philwc.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 25, 2025
Valid Until
December 24, 2025 36 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:E1:11:3D:02:13:E3:69:40:53:80:00:24:99:C2:B1:A7:8A:49:33:76:27:E5:17:A1:D7:62:82:F4:DE:12:F9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
softwarehut.io

Other domains in certificate

partnerdemo2.app.1on1navi.com
www.aafpets.com
web2020-development.ackee.agency
www.alphanumeric.agency
link.altrgo.com
antonlicht.com
app.askclass.com
app-staging.aurorabysigholm.com
bastiendupont.com
bb.blackboxvantagens.com.br
brunchycafe.com
canyoningmarin.fr
dev.app.carmigo.io
website.cfep.com.au
ckucera.com
www.classroomsolution.app
cloudtells.de
mentor.oceanacademy.co.in www.bellissimosalon.co.in
www.computeacher.in
console.dealpath.app
clinical-trial.dentalxr.ai
diegogabbi.com.br
www.discoverycancun.com
www.drop.quest
duodata.io
chauthanh.ebot.esoft.edu.vn
admin-portal.eduling.org
elgherbal.org
www.epic.so
admin.exceededa.com
f3morris.com
app.fadoi2024.it
farmakim.com.br
loja.flowpodcast.com
familieconvenant.flynth.nl
friendlysoccer.com
share.getallium.com
glamourwigsbyariella.com
go-my.app
goodgiving.com.au
www.hagaloencasa.co
hedgehappy.com
status.hellofresh.co.uk
hthsolutions.be
www.inbalancebody.com
www.inboxmedia.in
pokemonpaginationscroll.jaalorsa.com
www.jaspero.hr
jeruzalemeindhoven.nl
legacycue.jjglobal.in
www.jlrsddkey.com
jm-eventsystem.com
www.jorgecamse.es
juweliershuishenkbraam.nl
gpss-wb.keshif.me
app.kgnot-app.com
www.linkagebrands.co.za
blechteile.lst247.de
markgerharddeleon.com
app.messbechern.de
mindofmatthew.com
yap.mutecode.com
www.storepilot.my.id
mybakery.fi
marketing.myhomeclub.co.za
retenedores.mymoons.mx
bahrain.nationalday.ai
ebptracker.newgen.co
dashboard.mpro.nos.pt
auth.notefuel.com
www.p2pdigital.com.au
personalityfrictionpointquiz.com
phinance.philwc.dev
play.pingoo.app
predixmarket.com
admin-panel.us-east1.qlub.cloud
sso.ramp.com
rentoffers.io
revisephilosophy.com
www.paco.rocola.es
grsl.rxurl.in
sample.audio
sco-bo.stg.shippio.jp
admin.ucsa.sportkit.app
account.srvpls.com
suff.sufftopia.de
talk-room.com
music.tanndlin.com
thoughtify.training
dev.tilicho.in
test.timetip.app
tolga.app
www.valcomsa.com
besports.wearena.eu
www.witideal.com
genius.xilerth.com
www.zersey.com
www.zipdatapi.com