Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=pdfcross.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 27, 2025
Valid Until
January 25, 2026
77 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1A:0C:7D:A5:2A:65:15:57:CE:C6:81:C3:FA:72:17:E8:46:29:96:A7:FF:B4:FB:70:B4:99:57:85:72:7A:AB:2B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
tviekfilms.com
www.adressel.com
aichabarry.com
aixense.com
console.alleaves.shop
altonkc.org
ordini.aniplast.it
vendor.ap0cene.com
weather.apxor.com
karur.aravindtravels.in
order.aura-pixels.com
trking1.avada.click
magic.awesomepiece.com
backapp.world
lessons.better.club
track-main.bouncelogistics.com
api.cabanalabs.com
camillely.com
www.cemex.design
www.certexp.com
checkin.pet
rcb.com.ro
www.suzz.com.tr
www.critchfieldsprayfoam.com
www.designincubation.sg
mymeet.dev-set.live
www.docuvault.co.za
enlp.drone-roofer.com
app.dunk.tools
heechan.edcan.kr
www.edftw.com
ferkithome.com
service-new.fix4.com
app.formstosheets.com
www.garage-advisor.ch
gartland-cdc.com
sales-plus.ges.digital
karte.gla.jp
gould-eng.com
heimcreative.studio
facilities-uat.hotwax.io
nguyenbop2806.id.vn
practitioner.infinitydoctors.com
innsync.innlab.vn
kostiantyn-iryna.invito.link
jackassengineering.com
channel.joineconomy.com
jorgegabas.com
app.kaddim.com
www.kathleenskowlund.com
export.liist.com
app.mabl.com
intl.manabity.com
menymax.com
velo.mjczlin.cz
mobilizenow.io
netwrkly.app
www.nucleate.ai
nutrizioneandrealia.it
notes.obodianskyi.com
hearmemoo.onezone.co
app.arco.org.br
pablostefan.com.br
patricktingson.com
r.pb-femtech.jp
pdfcross.com
www.pensioenbijarbeidsplus.nl
analytics-dev.pixis.ai
plumes.co.za
producatoridinromania.ro
links.dev.melos.progrit.work
psychedelia.sk
play.quitaboletos.com.br
return-value.hr
emprendamos.panel.rhodium.ooo
rickgroot.nl
www.riplemark.com
tilvalg.rorteknikk.no
rutecruz.com.br
fb.sebastianjordan.com
prtangara-porteria.segurdiez.com
www.shorash-baker.com
siddharthrai.com
caceres.bioponto.sistemasnemesis.com.br
staart.build
stephenapolinario.dev
www.tammotion.com
internal.procon23.thangved.com
aesr.tilfin.com
traidverse.xyz
tranetglobalqc.com
ultinfotech.com
app.utt.vn
vamora.store
wahlax.com
websai.me
wospos.com
www.yoga-mettmenstetten.ch
www.zia.ac
www.zombier.no
Other domains in certificate