Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=www.sheild.life
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 24, 2025
Valid Until
December 23, 2025
42 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CB:97:92:9E:5B:2C:2E:C3:6C:D8:BB:35:B3:34:CB:7B:2A:2E:65:D1:BA:FE:EA:18:AA:EE:ED:AB:80:BF:20:FB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
staging.business.lifebrand.life
2018.devfest.ch
houseoffades.adaptivemedia.dev
alexarte.eu
app.dev.alignwith.io
andyarias.net
www.berimbaula.com
biglandprints.com
apps.c306.net
referral.ajaib.co.id
smop-link.togu.co.id
coldice.net
vcp.freshup.com.hk
www.comefollowmeapp.org
dev.commandeer.rocks
auth.cuttles.us
auth.ej1.cyberhaven.io
www.diviniti.tech
app.doceo.link
www.edium.ca
www.edukle.com
etagamma.org
startrail.fam-graf.ch
fastpos.app
vcard.fcsolucoesmodulares.com.br
www.ffsaza.co.za
fleksy.co
garaad.ai
gemslinks.com
dashboard.hellojeri.com
www.hmiqautomation.com
www.ikeatarot.com
www.kayamataband.com
www.kazim.dev
www.le-bar-paris.com
ac-auto.ltl-xpo.com
lumodance.com
blog.maestrasuite.com
www.mannaltecsettlement.com
admin.mathasa.mx
typingtool.matrixengagementgroup.com
mauroimperato.com.br
go.midmichrentcars.com
momok-r-blog.xyz
welcome.mutualevents.com
www.nesteggapp.com
newmetal.com
noncents.games
medadmin.mimaioh.nurseo.app
www.obakemask.net
obavestime.rs
www.paysly.io
app.picky.vote
report.pilargapuranusa.com
playeasyscore.com
install.pocketgeekhome.com
www.pradco.in
demo.core.prestoexpress.co.uk
payments-test.pubq.se
carl.purephotos.app
pwa2apk.com
rakumi.jp
channel.rapo.app
redraft.app
resultcast.app
ricepanel.com
register.ridezum.com
beta.portal.riggsdavie.com
www.rightcode.app
headless.staging.roboflow.ai
gentwitterkensakuurl.romantique.jp
www.royal.wine
d6-dev.rubyx.io
schniide.com
www.sheild.life
www.samtadoot.shrameco.com
gestion.slared.cl
slidepro.studio
rei.slsllp.store
www.smartdbox.com
online.smartseniorsavings.com
softwaretestcourses.ie
www.spanishwithbenito.com
www.stevehwg.com
www.steventidd.com
www.stockhub.app
sybrenjanssen.com
sykoticenter.com
tesuto.app
test.thegooddriver.app
tiendyf.com
prod-v0.tecore-client-cdn.timeedit.io
tioha.com
www.vetrinainformatica.it
volai.app
www.vvdlab.io
manage.vytlsft.com
www.wesmcada.com
wheelofnames.xyz
v2.zigbuddy.com
Other domains in certificate