77/100 SECURITY SCORE

Certificate Information

Subject
CN=prenota.efesta.net
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 20, 2025
Valid Until
March 20, 2026 68 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:1A:F1:F0:4D:7E:5C:F6:2A:42:68:04:53:0D:57:FD:CE:B6:E9:AB:6D:99:8A:77:9D:4E:73:E2:3B:D2:8C:9E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
web.wemingleafrica.com

Other domains in certificate

adi.xyz
app.allyhealth.net
androidgeek.in
www.apphouse.co.uk
arunbabu.dev
umafriend.ascii.garden
athleticroomprops.net
dlinkmsil-dev.bajajfinservsecurities.in
breinholt.dev
btb.expert
go.buyyourbreathegreencharcoal.com
cemreakudunyasi.com
tree-searcher.cgfix.com
chameleonpainting307.com
review.chymcakmilan.com
ngenes.co.kr
regaleria.cofaral.com.ar
jhng.column.us
crie.app
customersmessagingsystem.com
dana-ventures.id
dr-audit-i.dev-ltl-xpo.com
dioptre.in
www.dphektivrecords.com
easydrive.id
www.app.edropin.com
prenota.efesta.net
emilianoquijano.com
enquete.eventos.tokyo
evenxess.at
mascorsa.explorerworkflow.com
www.farmersmatchapp.com
auth.feli.page
www.firecracker10k.org
eqps.flapper3.co.jp
www.flutteristas.org
a0hg.foodle.su
editor.formify.cloud
event.forro.se
www.friendofhumanity.com
andwemet-admin.geekytwin.com
grabgames.com
dev-crm.greentiger.in
www.guptaandmedhiraassociates.com
soporte.gux.tech
hotelsaisham.com
icedigital.pe
www.iheartmilitary.com
imedis.io
dev.jandiprint.de
cube.januskopf.com
react4.joetlobb.com
jordanbarrilleaux.com
kayenworks.com
www.kojogo.com
www.konarskis.com
kwilabs.com
www.larisahorback.com
forms.lassio.io
www.leadership42.com
www.logiccrafttechnologies.com
lukasheichel.de
portal.mark-inc.net
masch-wedel.de
dev.mat-angel.com
www.mikemiwha.love
modularsd.com
test4.mycoursehub.de
app.mymoodbit.com
www.nickivanovich.com
obgames.app
www.onlydroptaxi.com
www.orangebloomtherapy.com
links.ordinary-adventures.com
www.paradoxe-au-village.fr
www.paraisodemascotas.com.co
app.peachfitness.co
dashboard.persistiny.com
telefonicaspain.platformkids.com
playmyday.in
www.pnqbeauty.kr
pocitaniprodeti.cz
www.ponlaya.com
kift.portfoliolink.co.za
purrfectmurder.com
claro.rayoapp.com
dispatch.sameta.in
www.sedlarobchod.cz
seeiuu.com
speechkeys.io
kumamoto4.tabingo.com
online.tebasenerji.com
admin.adas-calibration.tech-scheduler.com
www.thedatatalks.in
dev.timyst.com
app.tokendisplayer.com
www.unboxexperience.com
venus-qat.wemoscooter.com
business.yollty.com