Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=pos.schnap.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026 50 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:07:5F:39:9E:86:55:D2:8C:96:0D:AF:6C:F0:57:F9:4B:61:8E:55:D5:AB:DE:94:F8:BA:6C:4D:4C:BC:15:5F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
tintlaunch.com

Other domains in certificate

www.absoluteenglishuk.co.uk
digitalevents.activejunky.com
adityadhara.com
aegisprime.ai
alexloran.com
amore.salon
www.angielski-jaworzno.pl
ariskou.com
www.armitage.ch
assetopti.co.za
help.atmotube.com
recipes.bernardkintzing.com
isocalc-pwa.blackglasstech.com
ussd-vodacom.bluerobot.com
brusentsov.dev
dev.bsp.online
www.bybloszagreb.com
www.cadencesdesign.com
cameronboy.com
www.canadaelectricalservices.com
chokdeeathletics.com
tools.cloudparker.com
www.cnybridges.org
cdmedia-albania.contentcard.com
www.dashsafety.com
www.deltadivinextrusions.in
www.djlabs.com.br
www.donkeysgonewild.com
election2024.electoral-reform.org.uk
new-cms.uat.elkaso.app
epicanima.com
erdemcelik.com
esportsbonusoffers.com
trivialadderslink.etermax.com
ethanbulmer.com
relazionepcto.expritan.com
funeasylearn.com
www.getchirrapp.com
www.godalming.beer
portal.gruporiccoalimentos.com.br
count.gulfpro.io
www.haoyan.org
link.harkaudio.com
toko.heasoft.com
helpinghands.community
www.hidro-lazer.com
hodaya-slp.com
ignitif.com
dev.crab.iot.in.th
loss-survey.intechvalue.com
johannfeser.com
www.julrever.com
keymoti.net
menu.kiwisignage.com
lemeilleurcroissant.com
www.lmade.cz
lothlorien.dev
makebreakoutgroups.com
mal-pay.com
share.dev.mijnmarkt.app
mobinshaik.com
monabot.com
mosaikplan.com
www.logos.net.ar
family.netlaw.com
www.norit.io
nounthewiser.com
www.nsjaisoor.com
oguzkopan.com
app-testing-zen-vue.olttn.com
pbstaffings.com
train-time.penta.sh
www.pretture.com
auth.projectbios.com
dash.propcart.com
psinfraworld.com
millionceos.return40.com
robotswho.com
roundmaps.com
rowdybrands.com
www.sandlabs.xyz
www.sasbort.co.uk
pos.schnap.co.uk
www.senetlab.com
sr-woodworks.com
bracket.stattogether.com
app.streamfuel.live
api.stg.study-habits-dh.com
news.sumak-kawsay.com
www.terabo.online
thebigbulldeals.com
www.thepostalserviceofhappiness.com
www.tinderbanned.com
trekkingbackcountry.com
van-doan.dev
www.weevolve.co
wifleet.wiyak.online
zaferayan.com
zenkubernetes.com