Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=asistencias.escuelard.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 09, 2025
Valid Until
March 09, 2026
61 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
59:54:EE:91:CD:6A:F8:05:4E:B5:B0:41:24:C7:18:4F:2C:75:EA:6C:F9:D5:81:D3:E7:43:0C:F1:4D:8F:D8:3D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
us.hongmoe.com
101loop.com
aipine.de
odonto.apis.ar
split.apptohelp.me
www.astitchintime.cc
modeler-test.atrigam.com
www.avkempen.be
baseup.app
www.birminghambanglatv.co.uk
brux.design
btronx.com
www.carletonweb.co.uk
app.casadoarroz.com.br
cassandraweg52.com
charapasrally.com
www.chongtingfong.com
citizenjournalist.org
covid.webwise.co.il
colewaldrip.com
confiable360.com
stage.cuidarte.co
darrenspurgeon.com
docs.connect-platform.dataggo.com
mypersonalrunningcoach.davidecampello.app
deineneue.app
dev-sunil.com
firebase.deveo.dk
colab-life.dgsys.com.br
www.ekenedilichukwu.com
asistencias.escuelard.com
www.escuelard.com
www.evang9.wien
brewfalls.experiencesiouxfalls.com
fashionlima.com
spynda.filipmiik.cz
gdjs.foodle.su
foties.app
www.fracture-risk.pl
g-shipping.it
gbcorp.kr
dl.growingdots.com
grunsys.nl
guillesierra.com
admin.highglamp.com
hirservices.com
isandlot.com
callback.javascriptx.com
legacysales.ca
beta.lelundidespatates.com
www.linekrit.com
www.literaseed.org
www.livraison-express.net
admin.llevoacasa.com
www.local-heroes.ch
flickup.logicwind.co
loicbarbier.fr
develop.menyja.co
bimhydas.mhydas.com.br
migratetosdwan.com
mrchpeachygame.com
www.mpt.my.id
twinkle.nandenjin.com
new-immersion.ch
nexivr.com
ninjacuan.id
simulate.cert.novafutur.com
ohiofuckingsucks.com
www.onionshack.com
openbratsource.uz
partnerly.se
restaurant.preprod.paymytable.com
phdbydesignsearch.com
app.ppi-cloud.de
www.productosbogota.com
prototeam.app
quizparty.app
www.radio-regenbogen.de
link.radiotoolkit.com
l.rpphyogo.org
salarycalculator.app
ajax.scouthub.app
braga.scouthub.app
nashville.scouthub.app
selincicek.com
wellnessapp.simpayx.com
simplelog3.com
itaituba.bioponto.sistemasnemesis.com.br
skrflooring.com
solutionselectrical.ca
squeezeberry.in
react-router.staffshift.com
v1.tanchiachun.com
tapclap.app
tariksefa.com
otp-staging.tech-scheduler.com
toms-pc-help.co.uk
testgare.giochimatematici.unibocconi.it
lms.vahaso.vn
valkyr.dk
Other domains in certificate