77/100 SECURITY SCORE

Certificate Information

Subject
CN=arielcolqueh.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 06, 2025
Valid Until
March 06, 2026 69 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
14:1B:CF:7D:C7:52:E1:5D:03:8B:EC:8C:FB:59:86:1C:42:46:08:AE:BF:05:F7:E2:7D:E2:9E:22:1C:D8:9B:74
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
solutions.choreograph.com

Other domains in certificate

oongaboonga.dashboard.acadarena.com
propostas.addiante.com.br
aghaxnutrition.com
demostaging.aisessment.com
arielcolqueh.com
arrentalcar.com
asadoresdelnorte.com
www.asconsoftech.com
adoc.b2b.rs
basketlotto.com
glomocontinuity.bbva.com.co
capitalmindsconsult.com
casapratolina.com
centrohogarebenezer.com
chexlist.app
adm.circoola.com.br
www.clubcabbage.xyz
auth.compassiot.cloud
pdxdev.cubeapps.com.br
cursosoracle.com.ar
drhelpmovel.com.br
droptraiding.com
os.dynamo.io
admin.encolnschool.com
util.esantek.com
us.foodmenu.world
elpex.georaport.pl
www.getsafeapp.com
app.gettwoit.com
kassandradev.goaaa.com
gpi.social
greatzor.greatdream-guild.com
www.guibastos.com
guinchoparanoa24h.com.br
haccplog.jp
kyoninka.hatakeyama-office.co.jp
auth.hostme.app
hshub.app
organizationstation.i8the.com
www.ideate.jp
cdn-turbo.iniemail.com
www.kadr.app
kriyaaqua.com
lenoajar.com
localco.org
www.m4ttarnold.com
madniboutique.com
maeeventos.com.br
dev.magicmanager.cards
marie-sirona.fr www.marie-sirona.fr
meaghercountychronicle.com
miskoritmas.lt
moyenne-notes.fr
mundolytala.com.br
www.tiktokgomantayay.my.id
nekomusume.best
nricare.com www.nricare.com
onlibrary.net
www.overwriterobotics.com
www.pacdocsign.com
www.paribartandhakal.dev
www.passioneapi.it
peter-ying.com
pgaafly.com
www.pixel-entertainment.de
pochapeng.com
port-auri.com
app.projetou.com.br
admin-panel.qlub.cloud
roamcinema.app
sanad.team
admin.seens.io
app.stage.selfmadeacademy.se
shadegenerator.com
shapehouse.cc
api.shine-design.com
top100audits.sld.codes
lisa1.spacegravity.org
spellbeeprep.com
stockbrasil.site
alboa.supervisor.center
takealuke.com
www.targetanalyzer.online
theboosthub.co
tasks.thinkincode.co.za
tim-wang.com
www.tinbin.io
toezio.com
ifoxs.trudrive.trusom.com
www.trust-nickol.de
v3rii.com
valholix.com www.valholix.com
www.viralvisible.com
wickedcampers.ca
www.yasingedik.com
chronavi.yyy365lab.com