Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=minexcon.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 14, 2025
Valid Until
January 12, 2026
49 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:26:CC:CE:4C:11:1F:7E:2D:DB:77:A3:36:71:99:EB:7C:E5:2A:17:53:EB:D3:E6:B0:68:31:3F:51:47:44:5B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
synopsis.mindmilieu.com
lowes-kitchen-style-quiz-cert.3dcloud.io
www.allbestringtones.com
www.azigma.com
links.bereal.me
www.blossomc.com
bonga.dk
www.bumpgames.io
www.bytecrafted.dev
kiosk.connect.cannafo.com
www.captain-retag.it
cattleconnect.com
app.ccorl.com
centuriotech.com
cestcarre.app
www.studiomsfitness.co.il
www.thesixtynine.co.th
www.codologies.com
demo.comandera.com
www.damansah.com
danielmascali.com
decentranex.xyz
www.definedconstructionutah.com
www.discovercoupon.com
dharmapuri.eacabs.com
electrifyeast.com
www.emkyatec.com
espressoplusmilk.com
www.exc.pt
www.fantasyfootballtiers.com
flylog.fun
gdl5.foodle.su
forgefiber.org
us-marketing.fuelservice.org
www.fzz.me
auth-gestormax.gabrielxq.com
link.gohomely.com
www.grabcolors.com
harper.photos
client.incaexpert.com
info-lounge.jp
app.instructiongenius.com
valentyn-oksana.invito.link
chat.jaceyi.com
www.karunikachoo.com
keyshop.gr
www.kristie.com
gallery.leonard-siebeneicher.de
home.leonard-siebeneicher.de
www.leondelaimy.com
www.loicortola.com
loopappsupport.com
robata.madebyenzo.com
dashboard.maka-bane.be
app.mapyour.city
qa.doccsa.mayais.co.za
medicaldiagnostickwarapoly.com
www.registro.mejorpyme.ec
metroll.live
minexcon.com
mjacservicesllc.com
www.mjacservicesllc.com
www.mockline.com
auth.myvirtual.kitchen
www.nicevitenge254.com
nightjob.app
nzb.college
web.olabbio.com
omniswingpro.com
onchx.com
www.partnerly.se
www.pgn2pdf.com
photosbylp.com
develop.piletivahetus.ee
preprod.pimeclegaltech.org
erode.rainbowsdroptaxi.com
nagapattinam.rainbowsdroptaxi.com
perambalur.rainbowsdroptaxi.com
auth.rechart.app
rxlinkapp.com
small-acts.com
smartnexus.ma
dash.sobitz.com
mayorista.solkids.com.ar
blog.sora-riku.com
soundfactoryschools.com
admin.dev.standards.site
app.dev.standards.site
live.standards.site
stylorise.com
review-lovelive-cyber-security.t28.dev
www.the-fukui.com
links.thecoffeehouse.com
board.trakto.io
www.vsol.in
webcity.se
jury.viinikanlahti.weup.city
painel.winappdigital.com.br
you2you.co
link.yourchance.app
Other domains in certificate