77/100 SECURITY SCORE

Certificate Information

Subject
CN=ladycastle.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 17, 2026
Valid Until
April 17, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
64:60:E6:65:07:F3:8C:EA:99:0A:BB:65:F9:C3:1E:1C:0C:4A:D6:4A:AB:47:B6:B7:DF:9E:9C:34:CA:0A:52:E1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
trello-utils.codelenny.com

Other domains in certificate

0x420.io
auth.57hours.com
www.acuathleticscamps.com
webcam.aemalsayer.com
admin.agencykr.com
www.ann-louise.se
anybodies.io
aro.work
mentoriaassistencia24.atise.com.br
baoan3rdrd.shop
bargybud.app
beatingthebox.es
insights.borntobinge.com
pdfreport.bowheadhealth.com
web.brewfather.app
collectors.apps-staging.canadiancores.com
cjabenojar.net
app.classnika.com
dryclean.cleantie.com
genegraph-validity-test.clingen.app
synco-jfl-uat.roadcast.co.in
codingfactory.xyz
admin.cofcontests.com
www.colorringsstudio.com
auth.app.connected-citizen.com
webhooks.staging.controlpad.cloud
cplcrypto.com
cronosio.app
dashboard-staging.dailyquestplus.co.uk
www.datascienceyyc.com
www.deliverynotes.net
deshkementor.com
dev-dfree-fb.dfree.io
dev.renda.eduk.com.br
ellamakeup.com.au
mandarin.ent.ne
humancheck.exponentiateam.com
auth-sandbox.fidelando.app
galigro.com
www.gestortic.cl
www.notifications-page.fm.grzeg.pl
heramake.com
www.hilobit.com
irecruit.ai
ivaon.com
www.ivar-nilsen.no
admin.jakeslc.com
keposcapital.com
ktarr.co
ladycastle.com
lazylinepainter.com
app-staging.leftbrainperformance.com
www.lexira.io
livingteams.co
www.magicmanager.cards
martialcoder.com
mattdebinion.dev
www.memoboard.org
methvin.dev
www.micahking.dev
www.miklosmagyar.com
mineofgoldcoop.org
myminnievacay.com
www.ombran.me
orderlocal.pizza
www.pee-mail.com
philabs.xyz
picdrop.space
playerszone.in
playreal.app
pweb-tlx.com
test-auth.raaft.io
insta.rahcon.de
validation-station-new.rinkt.com
ruiamaro.com.br
www.samsung-cundinamarca.com
www.shluchim.uk
docs.shoplocator.app
www.simpleclub.uk
ozfjjvqsrgpbtprfxtud.smartimob.io
progging-og-morro.snapmentor.no
app.soljet.fun
sonderbase.com
raspored.strukovnasamobor.hr
pmc.suitefeedback.com
sukolabo.net
theiatrack.tc-exports.com
www.thaddybear.com
tmglife.no
www.tweerous.org
twistaxation.in
app.personalizatucorreo.uc3m.es
c.unce.jp
ununifi.io
www.uptightchill.com
valenofit.com
tandarts.victorvdb.be
app.vinettaproject.com
predictions.yo-yo.ai