Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=api.getpowerlink.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 30, 2025
Valid Until
January 28, 2026
59 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:82:16:32:7F:9C:35:45:2A:55:9D:BC:B2:4F:F9:9C:7D:44:84:AD:07:74:06:04:9D:C5:B0:2B:54:2F:AE:1C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
stg-reporting.calibr8digital.com
2021.chrls.design
www.4immagini1parola.app
abhishekgoyal.dev
accvaldivia.cl
acramer.com
duma.aimcomely.com
to.aither.world
www.aituring.app
aquaar.ai
www.arnidroptaxi.in
www.arriendosaltorefugio.com
www.artilas.app
www.avizomer.com
www.awesomepiece.com
www.backridepalawan.com
www.calc-i.com
charityfundpool.com
shop.coatxpress.de
www.coduture.com
www.hugemaxsolutions.com.my
www.minabiswakarma.com.np
uicco1.com.tw
admin.danielistvan.com
app-link-qa.dev-fpass.jp
blackscreen.dnode.link
dogiland.pl
eatdiversifood.com
www.ekhouvanjou.co.za
moneymanager.eliecerdaza.com
www.entrepreter.com
signup.expresstds.com
eyescholar.com
fianzaglobal.com
pserv-stg002.stage.community.fmworld.net
frenchlinguistics.ca
gallopz.com
gardenmakeup.com
gatoperdido.mx
api.getpowerlink.com
app.greenviewcrypto.com
guptechnologies.net
harpreet.tech
iiftiigls.in
ingilizcenigelistir.net
johnramirez.dev
sp.dev.kengin.app
krysand.de
www.lancerpages.com
lastgamemaster.com
www.lentoasemat.fi
www.listmanager.dev
www.listy.no
logilabo.dev
datarestart.lukascech.cz
saldo.lumbung.app
www.marandroptaxi.in
martinsorin.com
www.mlprof.lt
www.nail6.com
linking-beta.ooca.co
pools.pghdivelabs.com
plusminds.one
www.poema.dev
pranavarts.in
pranjal-choudhary.com
www.projetoeestilo.com.br
reinhardschnetzinger.com
www.roomer.in
root38.com
rturner.dev
connect-ng-carrier-recurring-lane.rxoconnectuat.rxo.com
sciket.tw
facturacion.simplex-erp.com
songsuggest.net
app.sourceview.co
spkinternationalexports.com
tournaments.statsroyale.com
step-one.dev
stumpsapp.com
vma.talentlytica.com
www.tejifut.com
www.theclubqueenstown.co.nz
thoughtcrafters.com
www.tienda.dev
troydcthompson.com
user.trustablee.com
signup.thrive.uk.com
dev-next.undock.com
beta.varejo.me
chat.veri.im
www.vernoncenterkck.org
www.westfort.dev
uidc-2023.wharfstreetstudios.com
ads.whizti.com
biz.wtmove.app
yknoll.com
apps.yourdriverhk.com
www.ytsveggie.com
zudallo.com
Other domains in certificate