Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=mealplanner.dforder.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026 85 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F3:1C:44:17:84:AC:B1:BF:1C:17:49:C0:DF:C3:3E:CB:5C:19:37:E0:E9:DF:63:1B:C1:8C:66:EB:49:BF:3D:7F
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
vbend.co.za

Other domains in certificate

200east83rdst.com
a1automotives.com.au
www.accentrenovationshsv.com
auth.afeed.co
alassv.org
www.all-done.hu
one-tap-access.alledotech.in
www.alraiti.com
amplifypcr.com
andrewls.dev
devtest.aniline.io
anthonytienhuynh.com
www.arturpfeifer.com
atix.com.pe
otr.barkimedes.com
app.base86.com
seller.bazarbhai.com
belt-blaster.com
budgetlauncher.com
canaffor.com
www.cawineclassactionsettlement.com
cromoneta.cm-evora.pt
www.novsys.com.ua
face2face.comline.gmbh
carniceriaycarnitasjimena.corntech.com.mx
cscsguide.com
davelinke.com
stratag-ordle.david-mould.dev
deeplyreinforcedgraphs.com
department.se
avalonconsulting.deskbooking.app
mealplanner.dforder.com
www.dsstars.com
demo.dtcco.io
www.edgebet.net
www.erpcoachnishant.com
sync.fireq.app
prijs.fisapp.eu
fandaharana.fpmaorleans.fr
evse-indiauk.framez.sg
gecosuite.com
ot-dev.gysite.in
hallify.app
hatari.cc
app.hellohostai.com
console.hgraph.io
www.hmcpacificnorthwest.com
www.inlandechoes.com
inno-soft-tracking.com
loss-survey-dev.intechvalue.com
invictaconnect.co.za
apiserve.janardhanpulivarthi.com
ceoi.lateral.com.au
latitunes.app
www.estanciavelha.rs.leg.br
mcmi.manaosoftware.com
admin.link.marlim.co
max-steffen.dev
ispmap.mcsnet.ca
memoryofhistory.com
auth.metalimits.com
www.myfinancialtool.com
auth.noja.app
stage.access.optculture.com
srtp.texbit.otobit.com
p15i.net
mobile.rostering.patchwork.health
www.pbsmediatech.com
pebbleapp.pro
www.pixelflurry.com
www.ppwlocker.com
www.primary-tracker.com
www.prismpreschool.com
ked-dev.publicissapient.fr
referenciasbibliograficas.com.br
app.rethinkreading.org
www.danilo.rf.gd
www.rounda.co.jp
test2.rwcs.in
selemmerili.com
l.clue.spinlow.co
inhouse-link.spruno.com
starlinksavedmylife.com
sunsetpetsband.com
www.hello.swajan.io
dnd.tallyfor.com
tamperees.com
sweeper.games.tetherstudios.com
www.the-hargetts.com
deaura.thediners.in
as-entrena-salut.timp.io
link.staging.tipstar.com
app.tobilou.com
truetoform.online
in.widgets.vezham.com
www.workaxis.in
xiongjoh.com
yokohamasyoken.com
zindagifragrances.com