Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=bluezone.michael-orenda.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 20, 2025
Valid Until
January 18, 2026
61 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:E6:3D:10:56:23:49:3D:1E:65:69:CF:42:06:49:E6:CD:48:2F:17:B6:95:D5:1D:5E:58:29:22:FB:65:60:B1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
unaeon.com
4dservice.in
www.5-wires.com
www.adamandzara.com
www.agent-school.com
orgmonitoring.altumvigil.com
ambience.ru
www.ankitamagdani.com
www.anonymouschatt.com
apexdigitalconsulting.com
arche201.fr
auroraworkout.com
read-staging.betareader.io
billshema.com
philipi.bovo.dev
boxword.app
calcolatore.net
bimbo.cargobici.com
www.cfrancis.ca
eat.chengkangzai.com
cipayblockchain.com
quadrakaryasantosa.co.id
www.cornerstoneailabs.com
docs.digimaxad.com
www.digitalunderground.no
doktoravukat.com
easy-space.xyz
2mit.easysignage.app
www.ecommerceweb.ca
elliotseror.com
www.enislim.co.uk
charla-ia.eximiait.com.ar
fembelling.com
footballmaths.club
www.funildossonhos.com.br
goldencredit.co
www.hallgrimgames.com
dev.beta.app.halodao.com
www.heisei-shojo.tokyo
hexaflexdev.com
www.hirservices.com
n.icamping.app
nhom10it744453it2000.id.vn
indianalegislativedirectory.com
buy.indiecrypto.club
jane-lee.org
juegasusu.online
solicitud.juegasusu.online
jurajurban.com
kamcoder.com
www.kingzoneexpress.com
kkepgep.hu
sponsor.levski.bg
admin.m1studio.co
mailam-admin.m1studio.co
melania.mx
bluezone.michael-orenda.com
mynorth.app
shribalajitravels.org.in
w.panjs.com
math.whiteboard.pirotech.fr
www.pixelsfilms.com
pokobarko.com
qualaces.com
raviservices.com.br
www.recomendables.com.ar
research-publishing.net
portal.rinkt.com
rxremedies.in
www.salmanzaheer.com
www.samatekinc.com
www.schedulematicai.com
shahzaib.ch
skrood.xyz
detoren.slices.co
smtinfo.cz
socialbird.us
lbpa.speakylink.com
srstores.uk
bodatoyosanchez.swanmoments.com
thelittleschool-house.com
evolution.theorygenerator.com
thetealtowel.com
dev.thevendorboys.com
www.dev.thevendorboys.com
thingquery.com
thxal.jp
admin-staging.trakto.studio
admin.trakto.studio
business.trasterox.com
www.treebooks.dev
tybury.com
ucolcampus.com
www.ucolcampus.com
vudduu.com
www.weirdtimeofourlives.me
www.wiish.app
wildfiretickets.com
xtensily.com
zoegabor.com
Other domains in certificate