Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=marketingjob.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 01, 2025
Valid Until
December 30, 2025
51 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1B:9C:4F:FD:90:9A:16:D1:B8:CE:22:30:43:20:4B:3E:BD:0E:D7:19:D7:B1:8A:AA:90:9F:4E:56:A6:6E:91:AF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
webchat.podeperguntar.com
3600steps.be
abtestlist.com
onesec.acesso.center
adminjob.uk
ahorrapp.site
dev-miljostrategen.albia.se
portail.albilegeant.com
auth.announce.today
bailarinadeprata.com.br
www.bandz.com.br
alg.bankabc.me
cleaningjob.uk
jlp.collaborative.fm
bookings.mitsubishi-motors.com.om
fun-games.com.ua
crcchile.cl
www.criticalmass.works
dailygridle.com
day-job.io
www.dectio.com
www.digitalinam.com
www.dogpassport.de
link.dragonshield.com
www.drewes-statik.de
admin.einfach-anstellen.com
www.emadshaat.com
oe-stage.emporix.io
www.expressautorespray.com
feesie.party
www.fidelius-discovery.com
console-26583399.focoten.com
francescamotisi.dev
admin.gogetcorp.com
app.gpixtract.com
landing.growity.me
coveshare.hashcove.com
go.hihello.tech
admissaobbraun.hrestart.com.br
lucan.hublee.io
internjob.uk
admin.iotdataroom.com
app.izi.health
jairovariedades.com.br
dev.joi.land
joshfoster.tech
app.jotajot.com
image-converter.joyousgarage.com
karakose.me
serve.development.karma.life
product.page.kirayepe.in
onboarding.klouser.app
app.legrandchampionnat.fr
www.linelesscircle.com
www.littlebuckers.com
newfront.loadsure.net
app.maider.jp
marketingjob.uk
mditherapeutics.com
portal.megalos-official-app.com
memebattles.xyz
mesbro-books.mesbro.in
online.micrm.vn
admin.mistrasportal.com
mjedra.com
kuliah.andiagussalimaj.my.id
opentide.my.to
mygifter.com
neoncurve.com
dash.saga.net.in
netbit.no
ey.nextgatetech.com
assets.onebrand.net
auth.open-domains.net
competition.udghosh.org.in
staging.api.lokot.phishar.io
www.phoenixnsec.in
primyo.io
learning.quantadt.com
crediagora.quitaboletos.com.br
www.restaurangperrongen.se
rno.me
sands-app.com
selfservice.stg.scadigital.com.au
sellr.pro
lifestyle.mysore.servicemall.in
uat.shop-rocket.io
www.sicobapp.com
www.softgreita.com
oauth.splashdash.io
suutriviaadmin.sqwadhq.com
rebus.surv.in
auth.tidtabellen.com
www.tmaholding.se
cdn.tmobility.app
top.gift
play.kidlearning.tuanle.nl
tudu.com.pe
www.vjshearingfolding.in
warehousejob.uk
Other domains in certificate