Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=24.guntxjakka.me
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 22, 2025
Valid Until
March 22, 2026
68 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9E:2F:F9:86:58:D3:AF:80:03:BE:94:03:D8:FF:43:C0:44:70:55:96:31:09:FF:1B:CB:90:AC:FA:72:49:E8:8F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
stackoverfood.com
dev.get.abcworld.com
achintyo.acuizen.com
za.foresight.adgile.media
aitiate.com
dashboard.akharva.co
amelipas.org
myrecipes.appsolves.dev
bashasnaturals.com
office.bizprocess.net
m.bnscan.com
sensefy.bolha.com.br
fi.caisias.com
www.cal-ev.org
carbonyl.org
www.classicalems.co.za
embassy.cognilements.com
www.collegeandfees.com
factura.prendamas.com.bo
dagmar-kaiser.de
devrun.io
www.discovereel.com
rrhh.distrisuper.com
djtran.dev
dotbuilder.tech
staging.edukamu.fi
www.englearn.in
everdoc.net
manager.extrai.app
staging.sport.fgb.ch
majmuah.finlup.id
auth.flambeaudx.net
a0j7.foodle.su
frostehr.app
24.guntxjakka.me
hakanbogan.com
creator.heny.app
hotelbluelagoondaman.com
www.hsdentalcenter.com
sbperu-auth.ibep-prod.com
innopia.eu
um.internspoon.com
natura.itesa.ar
null418.justinbaldeo.com
kanopaie.kanoma.fr
kapadiaco.com
l.kitaq-mirai.com
kurtli.com
www.dashboard.l-line.ro
larus.life
www.llm-ventures.com
www.lualearning.org
lukasgasp.de
matthatters.com
spanish.mayamd.ai
minimeijeri.com
monstersandmyriads.com
arm.morgansolar.xyz
staging-app.msgshark.com
www.multimots.com
www.musictheoryinonelesson.com
www.naturally-salt-poolaccess.fr
www.miboleta.net.pe
nivish.in
auth.ofertop.pe
www.peak-labo.com
www.png2jpg.co
www.pocketconcierge.uk
www.postprocesos.com
gestione.profitness.app
www.prrtransglobal.com
resolveja.quitapay.com
beta-pay.qwikoapps.com
radioh.app
redlinerentals.ca
sahanar.com
users.santrpt.app
register.scanycash.com
www.segundamentegtd.com.br
adminpanda.solsedu.com
open-insights.sonymusic.com
soulhealth-bg.com
speakermedic.com
sprytoolbox.com
www.stalwart.app
statsy.app
sulandrd.com
swerv.app
vote.takuwait.com
emailsignature.talentremedy.com
www.timerange.app
links.trevber.com
vigocrackers.com
nbnliving.vlivemedia.com
demo.whyq.com.au
wospsuperszkola.pl
app.staging.xapobank.com
www.xrbook.net
zeroonebit.com
u.zsaipay.com
Other domains in certificate