77/100 SECURITY SCORE

Certificate Information

Subject
CN=vinylbox.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026 84 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EF:8C:08:BA:D2:75:6B:33:91:11:CE:92:8B:0F:B0:B1:E8:2A:7F:36:F7:60:75:C1:1C:C8:E8:29:EB:10:50:34
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
tedx.ucu.edu.ua

Other domains in certificate

keeper-admin-test.11c.kr
app.affirmdaily.com
www.agorawarger.site
lojastopmoveis.appshare.com.br
uniswap.atlantislabs.co.uk
weather.atominfo.tech
batralawoffice.com
www.beightstudios.com
beta.bibicvendeghazak.hu
letters.brainsprays.com
timetracker.budiak.sk
www.capgridsolutions.com
profesori.centrulminerva.ro
chasemanning.co.nz
jz.clian.net
app.clipreply.com
deleteuser.wisebanker.co.in
codehelio.com
spinecentre.com.hk
www.upak.com.vn
www.computeintel.com
qa.admin.convercus.io
www.crustytrump.com
daruzo.com
delightfuldaysdaycare.com
dentalkpdc.com
www.deumete.com.br
developeraspirations.com
diamondalmirah.com
maslife-fb1.dev.dlize.de
stage.dyggame.com
freehair.edsys.com.br
eholde.com
champ.eu.com
car.eurobase.ro
ezycloudx.com
swan-operator-test1.fleet-dev.com
app.flylog.io
a0cw.foodle.su
gamsoft.eu
geopix.app
gianlucaefrancesca.it
tvos.golfpass.app
www.helloworldapp.com
hoowith.com
impactwrap.dev
imsal.be
ocm.in-gang.ch
dashboard.invition.eu
www.ital-moda.com
app-calculator-dashboard.itlicious.be
www.izarit.com
johanekroth.com
site-dock-dev.kaizenplatform.net
customers.karte-jam.io
www.kenskitchen.net
kingcrossmarcelin.online
www.lockviewlive.com
loja-ativa.com.br
www.mathquizily.co.uk
mcnet.in
dev.ipermit.mightybyte.us
app.monaai.de
movimientostem.link
be.ntntnl.com
specialspace.or.kr
pdsind.in
pellet2d.com
www.plawo.xyz
playblocks.games
www.polannetera.fi
sp.ponorder.kr
fractional.proveanything.com
portal.pyneapp.com
rimenergies.com
rice.pulse.sasaki.com
sergiogf.com
siddhashri.com
singlecasemva.app
www.sinop.se
composer-search.sld.codes
sneakytools.io
admin.solcall.com.au
sparko.studio
auth.speakylink.com
www.subastabot.es
thebookclub.app
www.thequoteapi.com
www.thesfactor.ca
www.thewatotoacademy.org
www.tolkmate.com
links.chargingservices.totalenergies.com
www.trellisconnect.com
webcomponents.truckstop.com
crewfit.turnosweb.app
vinylbox.app
stg.writer.app
youfix.work
new.zenwriter.app