Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=core.prestoexpress.co.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
February 03, 2026
Valid Until
May 04, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F2:52:E9:97:9A:03:98:44:9B:C1:E7:04:E5:A3:01:22:45:0D:0E:CE:D9:D0:E8:E3:F4:53:2E:4C:DA:E6:19:DD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
tomandsage.com

Other domains in certificate

www.agrosense.io
app.aj-contracting.ae
www.demo.alaxsa.com
alspice.net
aqulab.net
swap.artemisvision.io
share.asiaweiluy.com
login.bbihservices.in
bebrickwise.com
biddip.com
www.brightstores.com
www.bruynhuisgames.com
business.cambri.ai
account.changemakerz.org
admin.ciudadrealpr.com
domains.codeite.app
conthrivance.com
convertmyclicks.com
auth.alpha.cosmos.video
www.cotentia.com
courseweb.site
yoloxide.cylon.xyz
deanworld.net
deathbox.app
www.kls.dedy.no
www.dujoux.fr
csv.dunlop.app
eazycash.id
fakedictionary.net
familiebettens.be
www.fasatec.de
dev-dashboard.firialabs.com
dev.widget.fix.claims
obs.ftcwa.live
futurecustoms.co.jp
generalmagic.consulting
grupodeoracoes.com.br
heerass.com
www.herakrens.com
www.home4future.ch
hsbomfimcontabilidade.com.br
hugvinna.is
icnh.de
ihuayan.org
www.jedybo.com
www.kiaraplayschool.org
www.kurtli.com
app.laptopclinic.se
dev.live.lawimage.com
pos.dizzibrands.leap360.com
learningwithtext.com
www.limitlessloop.com
jetchickenlivramento.lupi.delivery
malware.direct
mysterydate.jp
naija-hub.com
ngs.onl
www.nowohucianka.pl
evcollect.ondagoapp.com
chatbot.arda.or.th
orientalthaimassasje.no
www.partnersandsense.com
admin.perfectwaste.dk
scriber.philliphooper.com
wordpress.phoenix-dz.com
down.plantbasedfoods.com
core.prestoexpress.co.uk
www.pxtwelve.com
www.racommerce.com
www.renovewellness.com
viewer.restomax.com
retrofifty.com
ricardoantolin.dev
rikakurumu.com
www.risop.com
bc.salonscale.com
satish-verma.com
www.seattleslabjack.com
sellamoment.com
skydotcommunications.in
www.smartdream.es
sensorvirtual.smartrural.com.br
www.soapmagazine.net
www.sonorapromocion.mx
www.worktime.soprasteria.com
cowboysphotoscramble.sqwadhq.com
www.studigpt.com
tastyhub.io
technifloors.com
www.thebottlebrigade.org
www.translog.lk
app.travelboast.com
oauth.ttree.co.uk
universallink.page
www.vatsalyahomeopathy.in
sme-onboarding-multiparty-staging.vaultigo.co.uk
noga.visita.in
wavelop.it
www.yosprv.com