Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=salesdemo.3bapps.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 21, 2025
Valid Until
January 19, 2026
67 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FC:FA:BB:28:EB:60:80:36:0A:F6:54:1F:B9:1A:FC:A1:FC:BA:87:ED:2D:B7:09:FF:F1:1D:AD:7E:B3:A8:CD:91
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
tomitech24.com
proletariat.12traits.com
2004.bloggies.com
salesdemo.3bapps.com
8bitstudios.dev
akshayaravindan.com
www.albinlandgren.com
zonage.anagraph.io
www.avwatcher.net
awesomespelling.com
ayeshasilm.com
bantoudesign.com
xr.bien.ltd
caasimilas.com
app-dev.cacheready.com
auth.carelyapp.de
chrysalyst.com
www.keralapublicschool.co.in
cort.dev
demo-ops.deben.io
feeds.delfspec.com
design-swell.com
badgescanner.doorjames.dev
dtcwarehouse.co.za
eatrics.eu
blog.ecotelhado.com
www.edh.ai
decode3.eestec.ro
eluaproject.net
www.enneagramforagile.com
auth.fervur.com
auth.fictionsoftware.com
app.fishfacts.fo
www.fontefideliti.ru
study-plus.foxxo.app
www.gagmatch.com
gdagtekin.com
snurpeldorf.grevling.dev
grupojadz.com
hayatria.com
healthcheckpoint.com
app3.hellotargeting.com
hex-perpetual.org
app.heyalfie.io
ilplatform.be
portal.innovativejnan.com
app.ionannex.com
www.ivycreek.io
cows.jacobobryant.com
jasperdevir.com
services.jeti.one
www.kahanaorchardsandgardens.com
www.ksctravels.com
rosetta.kylethatcher.ca
lacnog.lat
www.lazcanosamano.com
www.leotourstravels.com
auth.lokobee.com
www.loterica.link
www.menencia.com
mettafinancials.com
www.mlg7.es
platform.muddebouw.nl
www.myvisionlifestyle.com
alpha.nargil.net
www.neubesaiten.at
lunategarden.nissinwarehouse.com
notebook-lm.online
ntechgps.online
painel.okajimadistribuidora.com.br
www.onaglobal.co
dev.link.patona.ai
nestegg.portfoliolink.co.za
projet-prism.fr
quackbase.co
www.raxar.com.ar
www.andrea.reedit.au
www.rentalkovo.com
roisincollins.archi
www.royalguardian.farm
sahalnazar.com
secularize.us
app.selfmadeacademy.se
sh4rp.net
atsc.sourcesync.io
app-dev.stailer.jp
www.stephaniewongmd.com
dashboard.studyscene.africa
www.tamboresecores.com.br
tosup.kr
www.tracklistd.com
mushilog.ttechsoft.com
vianiassicura.it
wanke.dev
app.yamm-dev.com
yellowpagestoexcel.com
zabbu.org
waik.zal1000.com
negocio.zazpay.mx
dev.zocoten.com
Other domains in certificate