Open
Cached
·
just now
89/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=casa-app.mx
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
March 15, 2026
Valid Until
June 13, 2026
32 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
97:F7:EF:25:AC:2D:A4:EC:37:C7:87:C9:1C:38:0B:48:D0:5E:BB:2D:31:9C:08:61:41:B5:B9:9D:17:2A:41:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
geolocation=(), microphone=(), camera=()
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Add Content-Security-Policy header to prevent XSS attacks
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
vault-flow.space
www.1xrun.limited
www.accioscore.com
accorde.pl
app.gym.agape.uno
app.agroop.net
aipriest.online
www.alltimestowing.com
www.amazingvitalitymassage.com
pdfinvoice.apps.avada.io
boekelseverleiding.nl
brbsys.ai
buildorkill.xyz
www.buildorkill.xyz
bunangames.top
clip.bunkersync.com
carlospetry.com.br
casa-app.mx
club.cashflowteam.pt
centrurecreational.ro
civic-voice.us
gd.cns.net.tw
www.coldfusiontech.net
cqfdev.com
www.crickgd.live
qa.app.criisp.io
www.croom.xyz
www.devinraber.com
expertplus.in
www.expertplus.in
extracash.online
www.foxar.xyz
parceirodemo.g2canal.com.br
gagansh.com
www.gagansh.com
gandharsales.com
www.gandharsales.com
globalcaresurgical.in
hapticsync.gr
hitechan.com
humanormachine.com
pro.hyred.my
app.jdiasconsultoria.imb.br
www.kanjidrill.com
www.kiffgo.com
www.kshortsleeve.art
kuttikoliti.co.in
hostel.lancehawks.com
laptoptassen.nl
hokkai-support.lfv.jp
lidia-harp.me
lifeportfolio.co.kr
pineapple.limandrew.org
www.logicbloom.co.in
mai.tokyo
www.mandeepkaurtangra.com
web.staging.manowpoint.com
mathieuvacance.com
www.maxhairdiffusion.it
sellerportal-admin-uat.maxsold.com
pizzaplanet.meal2u.dk
megadan.com.br
app.microschoolledger.com
www.microzajm.su
moneytroc.net
moolex.ventures
www.mraquatech.in
mypcand.me
myvac.com.my
pic-tonybetes.mentor-stage.neccton.com
neversour.co
pay.nikol.ai
dev.app.nomelome.com
dashboard.parfums-asie.fr
vodmanage.people-connect.com
www.console.platcel.com
app.poderegularizar.com.br
realcheck.ong.br
rms.reconero.com
regencycore.com
www.reistassen.nl
rescu.app
beta.robertvandenborn.nl
sinectados.com
singhlivestock.in
auth.smartyprints.app
www.tiruvannamalai-droptaxi.in
towerlabs.com.br
www.trikochem.co.kr
order.truefinecoffee.ro
twinqlecomputersverify.online
link.ussoccer.com
vahansathi.org
auth-member.vendorhubs.net
vtsresidency.in
teacher.winner-english.com
gov.yoroff.com
www.yunfei.li
www.yunfeng.com.tw
zenly.life
Other domains in certificate