Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=spacedshopping.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 18, 2025
Valid Until
March 18, 2026 54 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:19:2A:6C:15:4F:11:BE:1D:6C:CE:2D:D3:3D:96:1F:DE:2F:B1:F5:64:0F:BC:29:80:72:8E:54:8B:3E:A9:94
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
spacedshopping.com

Other domains in certificate

8points.lu
officedelivery.act.ps
algorick.com
links.atoa.me
bannerdaythreads.com
bobsousa.com.br
bonfirelight.es
bostonhoops.org
app.rocket-voucher.botio.io
clear-sky.ca
amatek.co.id
acarsanelektronik.com.tr
comunemed.com
www.consensus-labs.com
studio.v3.contentfabric.io
test.craftboard.com
crossroadsranchanddaycare.com
dassheep.tech
districtshows.com
www.eduardorp.com
cloud-notify.ellisn.com
enqudo.com
esconline.nl
developer.fundwave.app
generalsalgado.g2canal.com.br
admin.gen11project.com
www.geracao.dev
s.glampinghub.com
grebe.jp
grip.run
auth.groupspot.app
hardcapp.com
hayesheating.ca
hdevalence.ca
testdoctor13579.healcard.com
staging.hoasaptenote.com
open.hourlyjournal.com
auth.hqama.com
app.icpkp.com
dangphuthanh.id.vn
www.ikriyo.com
ingenieur.com.mx
www.investbrickwise.com
itf-as.no
www.jointrusty.com
jplaws.app
client.stg.ekyc.knoxpo.com kyc.stg.ekyc.knoxpo.com
theme.kor-ui.com
ebook.kyokushin.net
www.lambhealthdpc.com
www.lifeonplates.com
paperclip.lordos.tech
m.mazdadegranby.com
mensagemwhats.com.br
pt-app.minna-no-ginko.com
moksha-technologies.com
mstu.work
myhealthtech.io
mystery-machine.net
nordicmachinery.app
www.nosproductions.com
nuck.app
jubo.onelovekmc.com
oows.se
www.oppsett.no
oshanflow.oshantech.site
ottobase.com
paraelisa.org
app.poweredbypolymer.com
www.psgimpex.com
www.putrinaqibah.com
rean.in
rollinghillsma.com
runpython.dev
scenicgalveston.org
sharkfin.my
trpg.siouni.jp
camaranslivramento.bioponto.sistemasnemesis.com.br
smartlabs.jp
smartshoppinglist.app
store.sougplus.com
spadeandplate.com
ufg.spwn.jp
onfact.swinnenacc.be
talent-ai.org
tantannamhae.com
tax.tidalforce.org
www.timezonemap.info
tryeat.me
cdn.homepage.dev.unemplacement.com
learningparuay.unileveractivity.com
uprate.co.uk
www.valdezconsultores.com
wallcome.site
web-fit.work
wevy.io
wildbrains.xyz
www.worktimelog.com