Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=getweplay.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 02, 2026
Valid Until
April 02, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2A:9D:93:1C:61:42:6D:7D:A9:EF:C8:EB:7B:AB:D4:71:65:27:AB:C2:E4:EC:6D:77:4D:A3:8A:61:79:8B:0B:6B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
teszt-competitions.fitpuli.com
11521164.stratics.io
abhijithkarkisaval.com
www.acentri.co
al-taswia.com
angoneze.com.br
www.bc-scanner.de
www.bednarz.design
berapo.net
www.biehler.co.uk
game.bigdustry.com
blocklink.in
admin.blushingowlstudio.com
www.briananthonyhanna.com
budsense.link
cal-culator.com
www.cardoter.com
www.chrino.com
citizenship-guide.com
clickhoroscope.com
fztoktay.com.tr
conbaonhieungaydentrungthu.click
conbaonhieungaynuadentet.click
connorkealey.design
cosmostoggles.net
creativhub.es
detrator.com
digitalnepalsolution.com
divinemachineproducts.com
djibaviationcivile.com
drnasheedali.com
eastwhiz.com
api.ecosync.energy
eealk.com
efidatos.com
eko-zakatek.pl
elpwireless.it
enatalem.com
engly.com
epochconverter.io
evanevanstours-us.com
dev-static.referendum2021.campaigns.fire-emblem-heroes.com
fugipay.com
offer.funeasylearn.com
gatheraustin.org
getweplay.in
goalsgate.com
group-amayadori.com
helderesteves.com
www.helderesteves.com
hibellconsultancy.com
humndrum.com
idraulicofoligno.it
illmbynouman.com
imsolver.co.uk
intechcommerce.com
www.itxi.aero
jdnewlove.com
www.keplerenergy.org
km.ksug.ai
www.laga.com.ar
lapandic.com
admin.lasepa.com
api.lasepa.com
leezumstein.com
lensfolio.net
lichnghilegiotohungvuong.click
www.locapartner.com
www.mcukierkorn-gestao.com
me.mission-nutrition.at
www.mycodestyle.com
mysentencebuilder.org
myta.bot
www.nandnandanarts.com
www.nefin.org
office110.info
paces.run
pdfmavericks.com
pianotrail.app
picapica.me
www.posbol.com
preachingmommy.com
www.realmofrich.com
roumu-k.jp
www.sandiewisbey.com
sask2suds.com
simpsonwhitetails.com
sjcdata.org
store.sophi.bot
www.sparklemarketing.ca
akilab.spwn.jp
apps.sublimesoftwares.com
amcs.suitefeedback.com
tafseelhouse.com
www.thecostaricancollective.com
www.thingdrive.com
todomate.net
www.toughlovearena.com
tsuitate.info
www.yksitservices.com
Other domains in certificate