Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=kmora.site
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 21, 2025
Valid Until
January 20, 2026
54 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:F4:00:B1:AF:0D:C6:F5:DB:94:10:65:17:32:7C:D8:15:6A:46:7A:7C:5F:72:98:4A:02:46:53:BC:46:D3:C2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
undervisningsplan.no
4bards.com
abcomp.no
abmrholdings.com
aibpo.ai
www.akashdevdhar.com
androsvilla.com
www.bookofenochaudiobook.com
www.butterflyhrglobal.com
auth.calverse.in
app.careerbase.co
cheerfor.net
www.ds-game.clarins.com
test.arena.code101.in
www.coimpul.com
www.ruknaladwa.com.iq
www.covidcontroller.com
dayora.cz
devplayground.io
www.didflatsquitoverwatch.com
www.donazizafood.com.br
invoice.encelerate.com
go.enchora.com
englearn.in
www.favethebrand.com
fayelomibao.com
termin-boost.fielmann-lt.de
followthemoneysandiego.org
freshwaterelec.com.au
fungam.es
www.gamestartschool.org
graaphics.co
art-is-everywhere.gracielasmet.com
grouperoyalesactions.com
www.happy.best
share.hbsfc.club
share.heny.app
flipflip.horizonfreebies.app
mining.instaclaim.ai
www.jesmok.xyz
kurse.jura-freiburg.eu
kein.cloud
www.kevin-marques.com
www.kevincklo.com
kmora.site
l.lendico.ng
letsforecast.com.au
www.mand3l.com
www.martinamasarovicova.com
materuel.com
www.menchasbeer.co
mirakim.com
ondemand.moveitnq.com.au
www.msdonlinebet.com
nautix.tn
nimblewolf.dev
nodesbots.cf
novodose.com
staging.v2.ocrooster.ga
www.orcarecon.com
pos.paydoo.com
testing.peec.com.co
kolina.pointspot.co
www.ppfh.rocks
dev-ptm.producttube.com
admin.uat.proveritas.co.za
www.qlango.de
grupobg.quitaboletos.com.br
get.reframed.app
rooferintel.com
ryanatevstudios.com
demo.showlifter.com
www.shufir.com
www.socialchair.co
solutiontechseries.in
admin.spirituallightastrology.com
intelligence.staq.com
www.syntoro.io
link.tabee.app
admin.takein.com
face.tasha-emily-stenner.co.uk
www.techhandoff.com
www.theautobarn.co.uk
www.thesourcesays.com
thirdaxis.io
tiksave.app
tonalida.com.br
www.tracklists.io
teachforindiakolkatadelhi.trustin.app
ttly.co
uanema.ventures
www.uniteapp.ro
agent.tk.videolink.app
www.vinal.io
admin-kohls.vividclm.app
w0rm.zip
yaahot.com
yavuzturkenderunbilisim.com
ctr.zeromolecule.com
portal.zooguadalajara.com.mx
Other domains in certificate