Open
Cached
·
just now
87/100
SECURITY SCORE
Certificate Information
Subject
CN=www.versait.nl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 27, 2025
Valid Until
December 26, 2025
34 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:49:B7:53:27:83:C2:CC:58:DD:98:5A:C3:A3:30:98:29:4E:96:C2:06:3E:0D:F7:2D:3E:6F:3C:F3:B2:84:5B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Basic
base-uri; object-src; report-uri; +3 more
base-uri 'self';object-src 'none';report-uri /_/view/cspreport;script-src 'report-sample' 'nonce-gOU5gi3j97ssqnaP2kZ1qQ' 'unsafe-inline' 'unsafe-eval';worker-src 'self';frame-ancestors https://google-admin.corp.google.com/
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
stripe.lukarma.ro
agilernd.com
anroy.ai
boxworld.appgrate.net
beststore.app
biederbuch.de
bijouxartigianali.com
cms.binituk.com
venados.ceropapel.mx
www.charts.io
cipt.in
www.confettipartydecor.com
www.crossavenueauto.com
tikkies.cyph.dev
deporty.com.co
developer.directpay.lk
sorora.areandina.edu.co
etherealframe.com
eyeofthetiga.com
fagerlund.fi
fightmyticket.app
findeck.eu
app.floa.com
crm.freemasoncrm.com
girnarbhakti.in
partner.healiam.com
gcp.home61.com
martinense.hrtech.com.br
link.huerzeler.app
ihgwot-stg.page
feedbacktrial.impaktid.com
connect.investpack.in
anime.joshuabennett.dev
jotterbox.io
kaankahraman.com
kloa.in
kohlitraders.in
links.kor.solutions
www.kotabk.com
looky.cloud
managudifoundation.in
www.mandm-racing.com
marchandise.dev
meetsuzie.com
app.mesrendements.com
metastream.cz
www.mondaypicks.com
card.narvizit.com
admin.nxt1sports.com
tafmekrandomizer.onclearning.com
onelectricalservices.org
onepercentdeal.ca
dashboard.packpart.de
panjurcubodrum.com
www.peak.flights
perasusa.app
perguntas.pertalks.com.br
app.placementmaster.in
www.prep-oil.com
pulpo.plus
puredrvn.com
demo.rahsathi.com
rbblife.org
rehan-marketing.com
retidos.com.br
rocktowntv.com
rozgaro.com
s-takahisa.work
salamasec.com
assets.salixhub.com
www.shahnatapp.com
harshoutdoor.showitbig.com
sidd.fyi
sikandersaleem.com
www.sitka-trencin.sk
sked.ai
game.snapmentor.no
admin.spectalmanagement.com
app.spitokalivaki.com
staige.nl
www.stairwaytotravel.com
takeyabcn.es
bbm.tanndlin.com
staging.tellustheodds.com
theatrix.app
mc.tiahealth.com
toyota-locker.ru
www.trevelo.app
tuskr.live
sdk-qa.upflowy.com
vahastyles.com
valetparking.fi
www.vbucks.co.za
www.versait.nl
www.vibratory.org
visual-generation.de
yetuglobal.com
www.yichallenge.com
my.yoojongwoo.com
www.zonilyjame.dev
Other domains in certificate