77/100 SECURITY SCORE

Certificate Information

Subject
CN=universehorizons.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
February 04, 2026
Valid Until
May 05, 2026 83 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FE:90:D7:D3:76:35:41:74:13:53:57:66:D3:1B:57:AA:22:96:93:8A:DA:A3:58:B7:81:F3:6B:49:62:54:2E:29
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
ux.face2faceweb.com

Other domains in certificate

giveaway.1ed.hk
22d.cloud
3fallpuzzle.com
go.806.tw
m-aura.abiinteriors.com.au
news.adiop.com
cursos.albertoh.com
pest.almeraim.com
pay.alqolam.com
andyscardetailing.com.au
averettcougarscamps.com
www.barbellsandveggies.com
demo.bloqadmin.com
byobuzzer.com
www.cameronwillia.ms
campamentodacpac.es
www.sakata.co.ke
newsportal.codegene.io
admin.premiercardgrading.com.my
communitytrustcafe.com
referral.credle.in
curtcox.com
darv.es
dbc.family
dixper.es
www.dorisbrody.com
drivebt.io
www.drmuratkarabulut.com
members.eclub.golf
www.escapelaplaga.com
fenixtherapy.com
foretriziere.com
www.gtms-entry.fsv-aptor.com
fujita-industries.com
www.gamecreator.one
web.getcoral.app
gofundrobots.org
goscootyrentals.in
www.harkaenergy.com
www.harpm.in
www.hyperparameter.co
inbill.com.au
www.issac-abraham.com
iventi.de
nyu.app.konch.ai
lanzatunegocio.net
www.lavishweb.com
demo.digital.lobb.in
kalender.mabrocks.de
staging.admin.photo.mas.run
www.michaelandkyrstin.com
midknitemagazine.com
static.mockingbird.studio
animize.my.id
nervedigital.net
newearthinc.in
admin-support.niceloop.com
nowaker.net
mv-dev.onscene.team
app.onwater.de
otimizeprojetos.com.br
take-ticket.parkchamp.ca
signup.playyoli.com
uatapp.polkahouse.com
survey.posible.in
www.presspledge.com
dental.pricewagon.net
coder.resultam.com
staging.sciens.cloud
www.scling.com
app.shipwithmich.com
store.echo.sohcah.dev
sonabim.com
www.stats.band
www.stevehenriss.de
cryptrix2024.stjosephs-engg.cc
www.suited.fit
sweetmickyfilm.com
dex.teadao.money
links.teeitup.com
testfcplcrm.com
www.theissanimations.com
thetherapyclinic.co.za
bitcoinsnake.thndr.games
s.truss.io
uclone.net
www.umpquastrong.net
universehorizons.com
sites.vecinos360.com
venusholidaymart.in
irep.vidocto.com
www.virtuadoll.com
visitesaojoaodelrei.com.br
www.weswongdesigns.com
account-d.whispp.com
www.worldwidew.app
wots.nu
x8bit.com
xman.io