Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=wa-protect.space
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 08, 2026
Valid Until
April 08, 2026
75 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
20:D2:48:77:1D:1E:6C:6C:01:9B:14:C5:64:F9:B1:14:24:F3:4B:5B:54:B1:7F:3E:A6:63:CC:09:B4:D3:25:43
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
wbeclinic.com
adesma.cat
aibaso.com
www.amicaleng.sn
annaliu.com
annettegora.de
admin.aso.market
dev.admin.aso.market
augmented-coach.fr
www.bigman.se
www.bindles.net
bufetexpromosyon.com
celushop.com.ar
www.chi2create.eu
chilik-tours.com
stanchion.co.zw
con-techx.com
www.con-techx.com
crowmix.com
app.cryptokeys.tech
shop.darkplace.dev
daude.ai
fatih.dayan.solutions
devinewithv.co.za
elsharkawy.online
examtyari.com
fichar-mapfre.com
finotero.ai
finotero.com
sh.fwcap.in
gavinkinder.com
devfest24.gdgstrasbourg.fr
app.adnoc.grok-digital.com
erp.hardikpatel.dev
allinone.harshtiwari.in
hilbertperez.com
toanmai06.id.vn
iics.be
www.iics.be
instagram-login-auth.com
www.leafybro.com
www.leafybro.ru
app.linenmanagement.co.za
lintapdf.com
www.locals.se
www.lumuslab.com.br
mirrors.matthewbickell.co.uk
mcmilitello.it
meltup.wtf
metanest.online
michaelzoelzer.com
www.michaelzoelzer.com
simulador.monetarecorporate.com.br
bajet.my.id
app.mycarecommunity.net
la-amistad.zerogroups.net.pe
erp.nirshyam.com
apps.pansingh.in
payhamba.co.za
payhamba.com
mytplus.petasight.com
piczelspydr.co.uk
pitchlab.app
planera.org
www.planuseng.com.br
www.reach3dcad.com
reachautomotivestudio.com
www.reachautomotivestudio.com
reachmerchandisingmanager.com
www.reachmerchandisingmanager.com
reachstylemanager.com
www.reachstylemanager.com
www.reachupholsterynester.com
reachupholsterypds.com
www.reachupholsterypds.com
dev-wateraid.redmind.se
refreshh2o.com
tutorial.rtsi.site
creditroleicons.scienceux.org
blackburn.scouthub.app
app.signalsonics.com
salas.simsutal.online
jupiter.skeetv.net
www.sodagaron.com
tasks.stayatlas.in
suhaapp.com
superclub.ai
bodaclaudiayernesto.swanmoments.lat
www.syakilatoptrading.com
www.synalogic.com.au
tafoam.store
dev.therupi.com
www.tomehspices.com
udaybharatmag.in
aiphoto.vibefoundry.studio
vincenzoricciardi.eu
vont.space
wa-protect.space
www.zoelzer.org
zoelzer.org
Other domains in certificate