Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=boardgamespacedotto.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
February 04, 2026
Valid Until
May 05, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
89:58:0C:05:02:35:1A:64:F8:E3:66:2B:41:B9:2F:E1:2F:38:D0:26:89:C1:C0:99:01:A3:F1:07:5A:09:FA:9C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
studentsvoice.co

Other domains in certificate

admin.3dabb.com
andyli.me
hmg-adm.aonderole.com hmg.aonderole.com
aparnia.com
staging.ayanza.com
beta.azzle.com
www.barbershopmayfair.com
www.battlequestions.com
boardgamespacedotto.com
boujeebubblesmobilegrooming.com
sandbox.brightfinder.co
test.dynamiclinks.bsit.com
bugzero.io
www.bunalert.app
catchlocker.com
client10.citadel.tools
www.e-arch.com.pk
consentcompanion.com
go.contentdash.app
escribidor.contramuro.com
coolwax.com
szavaz.cserkesz.ca
expomaratondelamarina.dashport.run
corporateweb.odfjellterminals.dblandit.com
deepfakex.ai
remote-play.dixper.gg
donttap.com
q2-myreturns.dpdlocal.co.uk
app.enerly.de
enlinquental.com
ericlantz.com
examensvoormakelaars.nl
www.ezspeek.com
fallball.io
fantasyjams.com
felix-vue.felix9611.com
www.fog.haus
www.forfeeder.in
prescgen.functionalthyroidcare.com
beta.g17.eco
glympses.cl
harristhomas.com
squirrells.horseriding.app
iamandrewscott.com
portal.islacare.co.uk
jonathanlouisng.com
kazankazanmedya.com
www.korobeinikihansblog.app
star.krishnan.app
www.layerized.com
api.learnpod.io
s.lili.style
soriana.livepanel.co
lli.jp
lobbyra.com
loggable.stream
nidnau.com www.nidnau.com
billing.nomada.cloud
www.onyourway.app
otavankruunu.fi
peyonic.com
www.prionize.com
promete-it.fr
staging.pxln.io
qrnavi.app
quintasteakhouse.com
www.dev.rallygo.eu
www.revolgy.co.uk
www.sahakar-group.com
elgin.scouthub.app
www.showfocus.in
dev.signatrue.app
acceso.simplesolutions.com.ar
play.skilltech.team
sloneczna.app
r67ybhjokobv6rso9tyg.smartimob.io
lasi21.snola.es
www.spiffyventures.com
tvf.spwn.jp
macutriviabu.sqwadhq.com
admin.stairling.com
talentmotive.com www.talentmotive.com
www.taxi-barraux.com
www.terrasvenue.com
textbehindvideo.app
vendor.beta.thegiftery.nz
www.thewisdomcircle.org
api.staging.tipgenie.com
toottogether.com www.toottogether.com
tresors-sucres.com
relaunch.tutorate.com
www.ukuchacha.com
unanichikitsa.com
www.unitags.app
vixar.co