Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=metryka.ai
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 23, 2025
Valid Until
March 23, 2026
67 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:1D:B1:BB:89:9D:53:93:63:4E:6A:27:D1:D5:6B:7B:6B:64:33:9C:16:90:FA:74:E3:CE:31:03:42:C5:9C:E7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
wallet.syncme.com.au
sikap.ipdn.ac.id
www.app.academiadupai.com
arki1.com.br
www.asplanos.com
axisroot.net
axiuexpress.axiu.ai
meet.beyondboundaries.app
m.bgame777.ws
www.bibel-leben.de
www.boo.chat
www.buildo.cz
www.loop.co.il
tess-admin.haiidev.co.kr
links.idealcard.com.tw
damianhaziak.dev
darshanrane.com
digitalbridgefoundation.com
dotawho.net
dev.www.doubleacegolf.com
www.easydrive.id
kampagnen.eazylog.app
ns.efone.ca
www.enklon.com
figurimade.com
auth.help.fnzsupport.com
studymaster.gigara.info
godrivela.com
www.gptez.com
greenmini.host
www.guenda.xyz
tess.haii.io
authtest.happynessfactory.in
harutune.name
hearteries.in
sotreq.hrestart.com.br
www.bfgm.hydrocode.de
app.imagemart.net
imhok.com
insta-giveaway.com
leagueofartists.itera.es
www.itronadapters.com
mc.jdadvising.app
josephsoliman.org
community.k-9apps.com
www.karoky.com
kevinaluwi.com
kidhaina.com
kirjanpitopalvelutoivonen.fi
test.kolayrestoran.com
www.kougar.io
app.lacrosselab.xyz
www.lactanciasegura.com
jobs.latitudenw.com
app.letjob.net
levelplastering.co.uk
data.lexer.dev
web.liberaworks.com
user.locoff.in
www.lyricstudio.net
majalaat.com
makesomecookies.com
www.mausipop.de
link.maximl.com
metryka.ai
modulusbuy.com
www.multivers.tech
map.muravidek.re
llamada.mymoons.mx
dashboard-admin-dev.mytechnis.com
www.nikosperu.com
nlocate.org
dashboard.northbeachvillageresorts.com
www.numedapp.com
overyonderonthecape.com
sports.patrickwilliamweaver.com
www.philbrookenterprises.com
cn.toeic.polylearn.co
link.preglife.com
dev.redpill.paris
reg2sign.removis.jp
actuarial.resre.bm
reubentudball.com
app.shopt.digital
www.signexpressus.com
www.blog.simplenet.hu
dev.siwa.io
www.svstransport.in
svtortue.ca
dashboard.swapaholic.com
taperly.app
www.taxi-lux-ramon.ru
dev-links.tazweedapp.com
noussommesmarianne.tfrere.fr
tobinsmit.com
www.app.trune.io
tsumori-project.com
app.waitbird.com
www.yauzifu.com
yooperdrones.com
Other domains in certificate