Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=painel.escout.trusom.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
May 03, 2026
Valid Until
August 01, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8B:9D:9F:5E:A2:AA:1A:A3:FE:48:7F:46:3E:1F:DB:00:84:1F:40:1D:D6:EE:DE:29:E2:D6:D9:70:43:2D:0C:EB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
traildelelongane.com
www.achawater.com
sdnkasai.agendasurat.my.id
amrodev.online
corp.ana360.com.br
lachiquinquirena.arkero.app
admin.atulaya.com
www.auzeichnet.com
test.bergversetzer.ch
www.binaryark.in
www.bookneat.app
www.cadconcept.eu
capacitacionparasiervos.com
www.climaticwatch.com
www.conectafast.com
www.court-buddy.com
clubsphere.csai.club
challenge.davehust.me
cowbell.dogbonee.com
drdebashisdeb.in
www.drpdfs.com
cdlformiga.edcliente.com.br
edsytech.com
eduada.app
eduardonasser.com.br
invite.edureserve.com
electrodomesticosmonclova.com
enlightenphysiospot.com
equiptalk.ai
www.fatenbayram.com
feelyo.app
auth.flotte.lat
fools.id.vn
www.founderstruck.com
www.friendlyfounders.com
fynos.ai
www.gaviwinerestaurant.com
amr.gitakalab.com
goldstack.gold
groglog.app
gta6-timer.com
food.gyanaloy.com
hmcp-albania.al
hvogroup.tech
ideai.com.co
impel.media
impelmediasoln.in
initium.ai
auth.isisapp.net
jaksanapong.com
www.joaosampaio.pt
juugo.co.ke
ibuhappyku.kemalwicaksono.com
www.kevinho.com
staging-baest.kindleanalytics.com
kiranbose.com
locationbriancon.fr
luishasweb.com
lybi.ai
marketingreferrallinks.com
marprimevo.com
astro.mathieuconvers.fr
matthias-apps.fr
fastcharge.mavolabs.com
game.megyo.jp
blog.michaelschilling.com
milesmarziani.com
missionarybeacon.app
mitenchauhan.com
mlbellezaintegral.com.ar
modelsatrit.com
expense-manager.monopolysystems.com
newjawlihall.com
nexodynamix.com
nusawan.com
www.nusawan.com
ozenvitta.nutrecaps.com.br
obstruction.ai
penguimbyte.online
penielfpc.org
pexam.cl
www.pharmavision.com.co
playboxcricket.com
reskot.pragatipathsolutions.com
prettypeacespa.co.za
punubeplusalpha.app
reflection-esports.online
www.reflection-esports.online
www.rodeiobeats.com.br
qelrivoncrm.roshcompanylabs.com
dev.savviapp.ai
www.sepiapotato.nl
sinexcusas.app
synoptic.academy
testimonialwalls.com
app.theboostmate.com
www.thanhdat.tinhocnangcao.com
painel.escout.trusom.com
youwontax.com
zungo.ao
Other domains in certificate