Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=cjw.qa.wallit.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 17, 2025
Valid Until
March 17, 2026 81 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
03:96:D3:F2:25:05:0E:E3:E2:9F:D9:BE:1D:9B:F5:44:0B:93:C9:A5:35:C4:01:B3:ED:F2:1E:81:53:B8:7D:88
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
tobyxia.com

Other domains in certificate

dev.1bpluschool.com
dev.octopi.28east.co.za
99softech.com www.99softech.com
www.actiontrails.ru
app.addedollar.plus
www.alfamous.ca
allstarroofing.co.nz
sanki.anbi-reception.jp
aurisoftware.com
www.avintas.ch
bgstudio.info
www.biuday.cloud
devtodo.brendanharan.com
ceiling.callrec.net invoice.callrec.net lite.callrec.net
ar.clay10.co.uk
dqc.stulzindia.co.in gthospital.co.in
e-labor.co.kr
www.coachx.live
app.coccoc.com
www.coffeecloserz.com
rogers.go.colonynetworks.com
www.controlspace.co
www.coxhoeve.nl
www.danielagalli.ru
www.arbeitsbericht.dedyn.io
test-panel.di-mo.es
www.dobbysadventure.xyz
donaarif.fun
maquettemaastricht.dutchrosemedia.com
electro-capellan.com
evergreen.wtf
evoralavanderia.link
www.farancewi.cz
www.flexiprops.com
gilmoreassoc.com
heritagesalonandspa.com
zoetis.idmx.io
www.indfer.com.br
industrialmindware.com
www.iuriscorpec.com
www.javines.com
www.jennifersviolinstudio.com
karate.services
koent.it
liiv.tv
www.literalcoder.com
office.blr1.locobear.com
xadmin.m.works
madebykyle.xyz
afiliado.manycontent.com
matildahaneling.se
maxbet88.store
mishadevelopers.in
shop.monkeysleeps.com
www.nadiemas.one
www.naerdinksveld.nl
netperf.tools
rh360.netvolution.fr
noelrecords.com
nyterealm.com
app.oshia.ng
fussell.partnerhub.co.za
www.pearba.com
pie-agent.com
app.pitchscore.com
plasticulture-project.com
pocketpost.app
www.posterize.ca
prepshield.net
www.promobarons.com
quick-napp.com
radanitsch.at
restinpg.com
www.rezayati.com
www.rollinghillsma.com
www.sabel.xyz
www.savankanabar.com
shivammarble.in
socialexpress.in
strategydance.com www.strategydance.com
app.t-rex.online
www.techhubcr.com
techmed.site
thefriendawards.com
topinvestor.co.za
web.trakkar.in
demo.unithrive.co
verillo.net
business.vezham.com
vieclampro.com
cjw.qa.wallit.app
app.warehousemotorclub.com
wezuno.com
www.zackkhan.com