Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=felipesantiago.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 06, 2025
Valid Until
February 05, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:CD:72:FC:72:8C:A7:AB:C5:43:D2:D4:AE:F9:68:FB:FD:33:0C:ED:25:D6:3B:4D:BF:43:D4:21:02:5F:50:7E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
tarotspreads.io

Other domains in certificate

1184.pontuax.com.br
division-one.3diq.com
www.420analytics.co
aamilnawazcyber.com
aaronspringsllp.com
abed.solutions
allezmaldives.com
animemixtape.com
astroxtechnologies.com
portal.athlas.io
www.ayrj.org
babycalling.com
www.baillies.co.za
www.bananaquery.com
prescricao.becaps.life
www.bitwav.org
link.bokka.com.mx
blaze-rent.boldfinance.in
attendance.bwltech.com
caliskanbeylojistik.com
app.card.date
www.chakrasoft.com
charactercrisis.net
connect.cloverbyte.com
tomerzakenphotoart.co.il
gaikwadclasses.co.in
tripsim.co.kr
app.collabnow.de
broadbandconn.com.ng
www.cscservizi.it
auto.d0o0ds.xyz
daniyalkautsar.com
app.delivery-link.com
east-calgary.com
edidesigns.com
ehemociones.cl
dolphin.enerva.ca
xhook-control.esdata.io
fasterci.com
felipesantiago.dev
first30onboarding.com
map.flurweg.app
foxlegal.net
germedina.dev
gigocorp.in
grounddrillerupdate.glohow.com
www.gourdetoken.org
www.gruene-neusaess2020.de
yomi100m-dev.hamajima.co.jp
haybarro.es
headlicegame.com
hojokin-dock.com
panchan.id.vn
test.josecarrizo.com.ar
www.jufelipe.dev
www.vacations.k-9apps.com
click.kingpoo.art
lacasadelvitrificado.com
www.lamed.best
lamiglo.com
loop-code.com
lopuj.com
api.skybandit.macaca.games
mallmax.com.br
dashboard.markusip.com
musiclog.org
musk.lk
mytherappy.online
login.openauthenticator.app
applink.ottindia.app
palletrestaurante.com.br
kaizen-vprd-web-dev.pbcd.net
pigout.cloud
staging-mocam.popul-apps.com
racional.cl
www.reurja.com
antiek.rodrigueverhaeghe.com
rubyonrails.de
rise.salem.edu
sensly.be
spmaisb.org
srimworks.com
studiorenatabergamim.com.br
www.table4.ai
hrtest.texolenergies.com
tiendalooney.shop
tisha.me
othello.tommyjs.dev
totalx.in
demo3.tranzita.com
www.vaivuado.com.br
vazic.me
fixparser.verolabs.co
vktech.cloud
waterdesignengg.in
oyun.lisematematik.web.tr
www.weightedio.com
staging.yeobos.com
taboo.zielona6.pl