SSL Verification Bypassed

The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.

Reason:

Expired Certificate - the server's certificate has expired

Open Cached · just now
62/100 SECURITY SCORE

Certificate Information

Subject
CN=dashboard.networkeffects.halfbrickapis.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
July 25, 2024
Valid Until
October 23, 2024 Expired
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:77:85:6A:5A:A4:CA:5B:57:95:84:6F:78:76:7A:A5:4F:6E:60:97:B7:68:75:3F:9F:89:66:05:38:B0:5B:10
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
vrtuopia.com www.vrtuopia.com

Other domains in certificate

app.abstrakty.com
abtsom.com
staging-api.adniter.com
help.adventurestore.me
www.dev.agym.co
amillionpizza.com
bg.artboxy.com
www.ashukla.dev
ytp.aspevo.com
consumer.atoa.me
azkhan.me
www.baltel.com
bioblends.ca
bladabonnement.nl
boomerangmaker.com
www.bowb2b.nl
bruit.io
builtinvestments.com
www.cashew.ai
cedarsbyte.com
www.chalc.app
chapapp.cl
ckrath.dk
coachee.app
bpc.cred.to
essay.cvhtechnology.com
dashwaste.co.za
digitalink.app
monitor.stag.self.dinii.jp
documenttool.com
www.ehrbar-bb.de
link.electra.audio
emmzy.com
morrison-uat.equix.app
fme-admin.erp.ngo
learn.etrivia.app
demo.factordecambio.es
hochzeit.favre.at
static.firebase.com
www.flozaar.com
dashboard.networkeffects.halfbrickapis.com
henosis.app
www.hotpinkpottery.com
idraulicoagallarate.it
idraulicoasiena.it
openpgpkey.jakubpistek.cz
www.jennchance.com
reactiveprogrammingforangularbaes.jenniferwadella.com
kardia.app
kollenmodellen.se
leadershipdynamic.net
livehackpanel.xyz
coaches.lopollo.dev
link.lumeapp.io
www.mdln.finance
www.menubase.io
www.mercadovizinho.com
mimozastore.com
www.mohsenizadi.com
monaram.org
www.myyachtlive.com
dqx-dev.natagora.be
admin.evaluationapp.mbmotors.nextlevel.studio
bimdataio.novamap.fr
ondoktor.com
api.sandbox.dashboard.payos.app
www.pelladesign.com
about.picky.recipes
www.piece.properties
plazar.app
qwikcheck.com
www.raceoffline.com
racional.cl
razmik.dev
sapet.app
www.seankutash.com
www.servicesfor.me
shopporoo.com
www.siamdoduang.com
dev.app.smokeless.world
www.stefimiteva.com
subacom.com.pe
play.tabpro.app
vania-retail.talentlytica.com
www.api.tapnotion.com
tenutabeddini.it
www.testmerchandisestore.com
quickreco.thepetdoor.asia
www.thmttch.net
www.tourspaddlingclub.com
trovilo.co
urielvillalva.com www.urielvillalva.com
uruslogistics.com
www.watch-calculator.com
www.wayd.com
wlp.whyq.com.au
share.wowop.info