Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=cantlinphotography.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 26, 2025
Valid Until
March 26, 2026 52 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D8:6C:08:7D:3A:B9:BF:B4:54:43:4F:22:AB:90:FA:EE:FF:42:B5:EE:F9:7C:D8:74:2F:EF:E3:14:E8:41:22:E1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
welloop.se

Other domains in certificate

app.dev.altamiraweb.com
amaansaeed.work
gauntlet.amerkovacevic.com santa.amerkovacevic.com soccer.amerkovacevic.com
anitaeducare.in
test.avers.io
marketing.awesome-table.com
cantlinphotography.com
casey.dev.app.carmunity.io
cellenza.in
chaytan2024.com
hello.classicc.app
cloudmall.site
myresume.com.ua
apiv2-staging.construyo.de
onfact.coopfabrik.be
dev.dharmakatha.org
estimator.digitalartdealers.net
develop3.manaport.seto-solan.ed.jp
www.eda.ir
enda.mx
engenhariadoapp.com.br
estrada.io
furniturecentre.in
nutrition-origin.me2-prd.gmal.app
www.hareni.org
headphones.science
rv.healthspaces.io
mta-sts.hindmarch.id.au
icao-alphabet.org
hust-cv-student-20214986.id.vn
firebase.idera.com.br
ifeiraoficial.com.br
app.imobiliariapadraoro.com.br
lexdoks.com
logicaljupiter.in
app.loyalt.in
lulucitron.com
www.mambas.no
app.mapleadspro.com
marcrufeis.de
www.master-designer.com
dev.matchbb.jp
scanner.mcom.app
v1.mczyz.icu
meltemi.info
methods.digital
demo.montri.fr
staging.myagentspro.com
liverpool-calendario.mymoons.mx
media.nangokufro.tw
www.netsolxperts.com
app.noltrade.es
www.nomista.store
wed.officialkasun.lk
onegoodprofile.com
kyc.onehypernet.com
orchidkitchen.oz-tms.com
paperdash.io
parkspass.org
www.payifyoulike.com
plusfour.co.za
share.plyoapp.com
tools.psalterapp.com
pulsetokens.org
www.reddinghomeloans.com
riadmahi.com
rodrigobastos.dev
www.rtpadventures.com
hattori.s-cloud.app
www.sanderschnydrig.ch
saqoralsahra.com
menu.saycheesebistrot.com
chrystelhugo.saynac.fr
www.seguros-canarias.es
github.sert2521.org
global.seller.sglcertified.com
www.sigma7.co.jp
plusdigital.skyltplus.se
smaksrecipes.xyz
smartfrigo.app
spatialbliss.app
spider.com.mx
sueca.app
www.sumitchouksey.com
sbx-yum-au-kfc-kiosk.supersonic-fm.com
www.thejoshderocher.com
thepotteryshed.com.au
id.trailbot.com
mibeta.tridotstech.com
security.console.ubutouch.com
dev.app.vette.io
bandu-orders.waiterpro.com
www.app.wefix.co.uk
wohnmusik.com
www.wooliesdumfries.co.uk
web-demo.yantralive.com
yichallenge.com