Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=blackraven.life
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 10, 2025
Valid Until
January 08, 2026
32 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:FE:89:AF:C7:4B:5D:38:ED:BF:8A:22:D4:18:59:B2:6E:5A:69:23:8B:D9:1A:4C:37:2F:81:B9:07:CA:AC:91
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
staging.nearlywedded.com
app.afirefi.com
alexiakattah.com.br
www.als-pizza.com.au
www.altabusca.com.br
demo-bino.appkitpro.com
www.avatarsmith.com
demo.bacotech.com
balipetfriendly.com
blackraven.life
threadmaker-staging.bluerobot.com
auth-stage.brainwave3d.com
www.padamrajchataut.com.np
www.hvdhealth.com.tw
pgda.qa.ebot.xbot.com.vn
consid.vn
cliente.consumerlaw.com
www.cube60.com
cwcollege.jp
www.cyaniq.com
regram.dephony.com
www.dfilm.com
www.dionmisic.com
vocabularybuilder.dmitry-o.co.uk
www.drsrikanthvarma.com
eddiec.photography
eluvio.tv
www.evolvier.com
expressrecovery.net
www.expressrecovery.net
share.farmrise.com
auth.fitnessyard.com
freshfrostfoods.com
pixi.ganalabolita.com
signal.gohihome.com
gordonbelray.com
gridstudios.us
www.haiting.me
hameed0z.dev
hanzhang.co.uk
heatsmartltd.com
www.hoerberlin.com
www.homemadeplayer.com
iamkrs.com
www.indcommerce.mx
www.jamesbish.dev
jpscs.jp
uat-msteams.knbases.com
konkarin.photo
www.lesambassadeursdutourismedurable.org
app.maakbib.be
mageshwaran.com
mandymcdermott.com
www.maybethebestofthings.com
auth.mealmaite.com
mindscriber.com
www.moistspider.club
www.mulagabe.com
gassendi-le-relais.musartdeurs.com
stgsso.myforex.com
lift.mypbo.app
dev.mysocialoptics.com
www.navadhiti.com
novainvites.com
philanievolk.com
www.pizzamoureux.com
playtripeaks-online.com
www.practiceplaygrow.com
ptg-in-a-box.com
www.qrkan.com
bestellen.ramysimbiss.de
repuestosotomayor.com
www.richwilson.me
www.rlmackconsulting.com
rota2025.com.br
rumumeka.com
s4hil.com
www.sewkate.studio
skolekart.no
snaptube.tv
work.soundsbutter.com
sqwadbingomlbdemoadmin.sqwadhq.com
www.stubb.co
sualsiz.com
regionorte.supervisor.center
www.tadaapp.com
www.tanzraume.com
app.prerelease.tara.ai
themobilevendingcompany.co.za
tornikoski.fi
trimbleconnect.cz
www.portfolio.umangbhatt.dev
backend-stage.uugot.it
butler.valdy.org
vibetechmz.com
wantlistmanager.com
washer.com.ar
whatbooksdoihave.com
www.x1resume.com
join.youmapp.com
Other domains in certificate