Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=fregomotor.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 20, 2025
Valid Until
February 18, 2026
87 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CF:60:5E:60:37:D7:68:7F:84:57:58:B2:F7:8B:BC:B4:2C:0F:0B:1A:53:9D:79:41:28:D8:1D:2F:63:17:67:E7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
teamparlor.com
a-tokyo.jp
asklife.org
pratteln.avdis.ch
avkempen.be
asp.mockups.axalize.vn
biofuelszambia.info
link.circlek.hk
classical.io
coffeedrivendevelopment.co.nz
perodua-lse.celcomfms.celcom.com.my
www.david-rebecca.fr
www.dexba.info
clientes.dicora.com
dtcp.me
applyconsumer.ezfinanz.com
fasady-terasy.cz
dev.fleetseer.com
gdqr.foodle.su
fregomotor.com
www.gaborzay.com
www.garyheffernan.com
ghalebbadran.com
gunhillaveguesthouse.com
www.harshweb.com
www.hautehousebrands.com
helisson.com.br
www.helpboardapp.com
hichamhr.com
admin.hipai.in
hola9.com
portal.hooray.vn
join.hyll.com
iiminterview.com
ijzerenhein.nl
intouchtool.com
joneswoodcollective.com
joshharris.io
jupium.com
kajimotomusicparis.com
knowzero.org
kopan7.com
photos.lazy-y.com
legacyofredemption.com
www.lekeodewuyi.com
lotony.com
louransolutions.com
lumoslogic.com
www.lumoslogic.com
www.mavericksoul.com
mcgannfamilyfoundation.org
mediamic.in
webmail.moojob.com
mrigashupathri.com
mtctuition.co.uk
mymacai.com
negroponzi.com
dev.nethercalculator.com
nomansystems.com
nstautomationworks.com
www.nstautomationworks.com
olayne.com
mhc.ongclement.com
www.oren-and-koby.com
palestinequiz.com
papkie.com
pigeonquest.com
share.playwallpapers.com
potligrocery.com
www.purelocate.com
quadrasgobeach.com.br
rbti.pro
mobile.redriverclerk.com
registration.reevtech.in
staging.retardvolantilles.com
app.retrollector.com
referral.ridedott.com
servicebon.com
sharpenyco.com
slooth.com
www.smartcandidature.com
vote.sosobrindes.com.br
sperainfra.in
spitlord.com
startgamenight.com
offer.terass.com
programs.theloomaproject.com
lightup.therestinmotion.com
test.theretirementtracker.com
toastmastersuganda.com
shipcraft.tribal.dev
tuxedolab.com
test-firebase.ty7y.com
app.vervemoney.com.au
app.wardyan.com
www.wastedpixel.com
covid-research.wedevelop.me
demo-ravine-rabbit.wiselysoftware.com
youstart.in
www.zyorahub.com
Other domains in certificate