Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.jobampla.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 09, 2025
Valid Until
March 09, 2026
75 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C5:DC:45:C9:BA:97:65:6D:9D:EB:28:A8:0A:35:77:29:20:AF:C5:CC:86:C6:00:E8:76:69:23:2E:AA:25:A5:F8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
swarf.co
gioco.4bp.com.br
www.accuenergyadapters.com
aikolumi.com
dev-edm.aimmo.ai
lafort.appshare.com.br
beta.baseworks.com.br
biopmsolutions.com
staging.umbrella.blackarctic.studio
www.cintralis.com
egcaithawra92.clevance.com
kalendar.innotia.co.id
public.kkip.com.my
staff.kkip.com.my
vendor.kkip.com.my
www.connect2.in
convene-now-dev.cpptl.co
curiousoft.io
curipha.jp
pms.ddzone.xyz
myteam.dlchub.io
eaglesne.ws
auth.enjoyunion.club
www.enriquedescamps.com
scbeasy.eventpop.me
app.facial.media
www.finnosec.com
flutterlab.io
fontanoza.dev
foxpricesheet.fox-pest.com
quiz.gardell.me
mca.gkibria.com
www.gorillasports.com
app.hairdays.com
app-dev.harvestassist.com
insumosdellitoral.com
www.insumosdellitoral.com
interalpina.com
www.j7126.dev
jengo.co.za
www.jobampla.com
www.kaibaier.de
www.kevinvuillemin.com
development-happiness-webapp.knolskape.io
www.komonori.jp
konstant.uk
individual.legalhobprime.com
jupiter.littlelives.com
tribe.livingmeaningfully.ca
fpt-demo-staging.logivan.com
quiz.lojavirtual.com.br
app.lumineet.com
maxentwickler.site
www.maxentwickler.site
medarov.app
www.musz.io
nemonote.app
www.flawed.net.nz
logo.net.ua
app.netcomace.com
www.nicolas-valencot.com
nlb-realestate.com
www.opyn.io
www.stpaulpj.org.my
www.osparis.fr
phile.dev
www.ptz.im
alexa.radiofreccia.it
randomideastore.com
www.ravivermawriter.com
rawwcuts.com
remoteobserve.io
next.retrollector.com
korporat.ruangkerja.net
www.ryantsangai.com
sadcap.com
sajidahamed.com
extranet.score-energies.ch
deals.seniorsavings.com
sharevillage.co
www.shenli.dev
shimlataxiservices.com
www.southhillbreadbox.com
bennersamcoadmin.sqwadhq.com
stavrones.com
oauth.suncyan.com
qa.teqdriver.com
admin.tingtong.vn
topevents.pro
topsun-fpc.com
dev.tracknicity.com
webapp.venuetechconnect.com
www.vincecyriac.dev
preview1.fm.stage.voiapp.io
vrworldspace.com
webassembly.ninja
www.wehnaumgatedcommunity.com
yanartech.com
dnamapgenetictest-report.yourgutmap.co.uk
zdolnejperspektywy.pl
Other domains in certificate