Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=admin.rocola.es
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 10, 2025
Valid Until
March 10, 2026 82 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:08:FD:1E:C6:6E:4C:D4:49:2B:80:10:AA:B0:AF:D2:3C:B8:C3:B2:17:6B:DB:69:61:E1:77:42:41:0C:BF:7D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
vendame.cl

Other domains in certificate

csw-roomplanner.3dcloud.io
www.9ok.in
www.abbysage.com
www.actuary.studio
go.kesherr.aimpact.ai
newsletter.ann-zdrowie.pl
app.atclinic.us
autobitiotsolutions.com
politica.azume.com.br
pwa.biobarica.com
links.bookaway.com
cabs4tours.com
dbp-dev.web.carrefour.it
bobabear.co.in highwaydroptaxi.co.in
coisasdatecaloja.com.br
crafty.film
auth.cuponatic.com.mx
www.cyrilpillai.com
dassoft.org
daswebsite.com
dayby.io
events.deeniakhbar53.in
diyonwaterpets.com
app.docsndata.com
earlytonow.com
forms.elvesapp.com
erfolgsgedanke.com
www.eule-elli.de
fastdealcar.com
feelperformers.com
admin.stg.fhsis.org
fineflowai.com
firekit.space
link.fstock.vn
fuadchonora.com
fuelongo.co.uk
getaplano.com
www.healthtravelsecure.com
www.honwelov.eu
simplynoti.nhatphan.id.vn
kmeans.idsucla.org
includemeafrica.org
alerts.invenzi.com
yulian-masha.invito.link
jeroennicolai.com
joshv.codes
kawaiikiwi.online
kill-the-king.com
anmeldung.kunstschule-neuss.de
laboxamoments.com
domnul-presedinte.lerimas.com
test.sauver.med.br
medievalmerchant.com www.medievalmerchant.com
fireb.minortom.net
ads.mintpay.lk
mollychacon.com
auth-dev.multimate.io
mythunder.io
nammuderide.in
www.rventerprises.net.in
hm-dev.fewkes.net.pl
www.nioequipment.in
shading.nkportfolio.com
openstage.amsterdam
www.prayerwall.church
www.primeplexpictures.in
restaurantesrustic.com
admin.rocola.es
roofdeck.io
saletaneczne.eu
sicine.mx
signer.is
mapper.sksis.ca
cards.snazi.ca
sopi.info
buy.speak-digital.com.au
superpajo.hr
www.survaivor.nl
customerdev.swiftlaundry.mx
safe.test.tada.dev
apps.techmanzain.com
teplickycimes.cz
www.thylacine.nl
toyotsukisoft.com
tuandv.me
www.tydiup.com
salud-autenticostigres.uanl.mx
star-demo.untied.io
unitedsup.utaiseya.com
admin.uzaje.fr
valleyai.io
www.vellalarmanavizha.com
www.vinkweb.lu
text.voip.io
enigma.webspired.de
connect.wisetek.net
www.yogagoof.com