Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=manage-it.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026
53 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A8:E3:F8:21:E2:75:B0:4D:56:1C:EE:7E:A6:89:04:EE:AE:1C:7A:62:D6:B0:3A:D6:4C:94:79:1A:85:0B:2D:E3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
wekicards.com
scp-product-config-cert.3dcloud.io
aianddatalandscape.com
next.aleri.app
alltherapymassage.com
nagapattinam.anbudroptaxi.com
www.apollonea.com
www.assign2.me
www.atgc.app
bakestudio.in
www.bigresume.io
bluequest.co
buildandmeasure.app
burgertruck.ar
ccseurope.it
qr.chironnect.com
liber.coex.cz
collinsng.com
hr.ennesse.com.mt
dev.ar.consensus-labs.com
www.countryroadapp.net
socialauth.cps.golf
logs.curiosityforall.org
pro.daicoh.com
saas.deeper.la
www.doughratio.com
edemascore.com
www.elaitch.dev
www.eshi.io
poc.ezsun.co
www.facepalm.lol
foodchow.net
auth.freshmanuals.com
www.frigo-teknika.com
www.funwari.dev
static.garrettroell.com
link.gigpro.com
gpsafaris.com
dev-subscription.growlight.cloud
app-preview.guibo.travel
www.hashdash.it
hbcyber.site
helitaxii.com
rmmlatam.holcim.com
holtrussell.com
development.homegrowngardener.io
atp-uat.hotwax.io
www.howmanyisit.com
link.hsl.school
iot.imco-berlin.de
a0sza.podc.incentable.com
injavascript.com
thesource.onsite.invue-live.com
phtrang.io.vn
iqmor.com
jackmaurer.com
carepro.joinhonor.com
coba.kipa.id
kiwiui.kiwibot.com
komisslubnyplussize.pl
pay.alpha.konta.tech
personal.lante.com.co
laurenmeinhart.com
www.linksround.com
lifecu.lunaconnect.app
manage-it.co.za
cariboutaxi.megataxi.com
www.mobilogical.com
links.cardiacsolutions.mycareally.health
www.nohea.tech
platform.on2off.it
organize.zone
www.pencl.de
pieterjanderidder.be
bestellen.pizzeriagranditalia.de
cloudcity.pokrzyk.com
www.refuellabz.com
reruled.club
actuarial.dev.resre.bm
ridelevel.com
www.rkblawcollege.com
sarahbiffle.com
sklb.app
join.sleepcycle.com
mpfamily.straybirds.in
sr6qpuhgwd1tf.symbolabuse.com
synea.io
angular-recipe.thewordisbird.dev
www.thriwin.com
www.tourinia.com
trackrenewals.com.au
www.tredko.no
unavutrust.org
www.uppstuk.se
usersmanager.com
www.uverify.io
www.wealthcertification.com
staging.worky.mx
www.xmc.me
demo.zlipp.in
Other domains in certificate