Open
Cached
·
just now
89/100
SECURITY SCORE
Certificate Information
Subject
CN=alunos.imaginakids.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8B:4E:01:FC:7D:C5:9A:F4:4A:76:31:74:D2:E4:4C:FB:25:69:09:D9:32:08:11:5F:0F:2B:41:83:20:35:FF:9E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
Content-Security-Policy
Basic
frame-ancestors; object-src; script-src
X-Frame-Options
Excellent
deny
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
staging.familyportal.nyc
www.andyfrantz.com
www.anindianaffairarmidale.com
www.apeaceofmindpc.com
api.417.cz
www.arcnet.com.br
pxmystery.aureliencurti.fr
www.ballebaaz.com
www.binkertlaw.com
captin-mohamed.com
www.carolingcompanion.com
clarityapp.in
clothescarefulham.co.uk
moca.co.in
leaderboard.mufin.co.kr
developer.codebase.mx
www.buenaventura.com.uy
www.contil.se
cybershit.de
qr.davinci.lighting
dlkanth.dev
customershipping-d1.dpduk.dev
quizsapfi.edmar.dev
appfc.ferreiracosta.com
rinkeby.fluidlabs.xyz
www.funmeee.com
sacramento.g2canal.com.br
getvfeed.com
auth.app.grabchai.online
my.heedsource.com
indecision.holdenmonroe.com
www.hypervr.games
alunos.imaginakids.com.br
mandataire-preprod.monjuridique.infogreffe.fr
filing.investably.io
kamytech.com
www.kikenyatours.com
krfn.co.jp
libraryof.pizza
linfieldstables.com
status.logicworld.ru
opendatadev.londonhydro.com
macroalgasperu.com
sb.magmic.com
www.mako.io
marianamarcato.com.br
mcalesterdds.com
mealgroove.com
l.medbound.com
melvinmoran.com
admin.moderngolf.mindfulgroup.net
www.mokolada.pl
mur-public.ch
www.myreme.pl
www.natevanbonn.com
www.neoufitness.com
nextgeninvest.in
nolsonlabs.com
hefestus.org.br
p2pside.com
app.paven.io
www.pephands.com
app.pikpo.work
nca.piticommerce.com
playasnudistas.net
pluraling.com
dev-staging.pneuma.care
www.postcloud.tech
www.pricebajar.com
probablyzen.com
www.r-systems.ltd
soundboard.raidsrc.me
mms.recruiting-solutions.org
robertgolawski.com
samplia.com
c4c.samyok.us
www.scoreops.com
servicefolder.com
sle.siapco.mx
sigec-elfuerte.com
links.ibpj.sofisa.com.br
www.str-it.de
online.strongermen.org
client.studely.com
auth.swiftdoc.com
www.tambolabook.com
www.targetprops.com
dgmrthailand.teedteed.me
www.telecious.com
www.thedevlab.in
backup.themos234.com
thepowercourses.com
torpalangan.se
trektube.com
trident-hr.com
udhiya.ca
vinologist.co.za
wifiqrcode.com
www.yakagy.com
ycbh.in
Other domains in certificate