Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=auth-parking.quantiful.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 16, 2025
Valid Until
February 14, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:57:FF:34:E9:96:F8:85:A3:88:15:94:D5:1F:9D:E2:A8:AE:1E:B8:70:F6:94:24:97:42:A5:C5:C0:A6:23:8D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.2way.pk
admin-pendlio.com
ajefsoftware.com.br
www.allaboutextract.com
andrew-abu.com
app.apelabs.com
arcadenoecj.com.br
app.bestellmo.de
app.arungdakka.biz.id
project-status.bofanzhang.uk
bookfind.io
booklearn.ing
bridge127.org
report.stage.iotco.bycopilot.com
www.cafetrespalmas.com
careergame.com.br
carejob.app
carejob.org
christconventschool.in
uat-admin.cinemanafilms.com
business.poalimlinks.co.il
africasteel.co.zw
journal.classicshumba.co.zw
portal.nieuportmews.co.zw
app.cocktails4realbartender.com
commandergabble.info
www.crexis.at
cwstories.com
dolceroma.eu
www.duosys.gt
help-demo.energy-manager.de
ensembleparisopera.org
fahrrad-zehdenick.de
pay.fetchpet.dev
filotax.in
www.filotax.in
repeat-deal-registration.freee-apps.jp
www.gemini-game.com
staging-staff.getservednow.com
giftkeeper.org
conexaoia.grupoarti.com.br
smarts.guncoder.com.au
3bwonen.herstelverzoek.com
test1.hireforce.jp
www.homesalonbuda.com
www.hoongspalace.com
www.huffreude.at
hyunseoson.me
n202400066phong.id.vn
www.ingatuneew.dk
ishtarwinebrasil.com.br
www.ishtarwinebrasil.com.br
navmenu.jopit.com.ar
www.jsontabs.com
keebbear.com
www.lendmo.com
ai-governance.leonardoteubal.com
levelwinners.com
lizaexchange.com
www.manchstudios.com
www.meet2train.app
www.mfgsolutions.com.br
chat.michael4numbers.com
www.mihetofilms.com
dev.myclarity.io
mystena.com
www.openstageamsterdam.nl
palmtreeclub.finance
www.pianolessonsbelfast.com
www.pixlk.com
www.productinsight.cz
auth-parking.quantiful.io
www.rafaelfeiten.com.br
www.rocioycesarcristal.com
engage.roidea.io
rsurf.pl
www.scott-enterprise.com
www.seannuevo.dev
selloop.ru
salem.selvitravels.in
po.shabeelconstructions.com
shg.sh
visudat.sinopsis.io
smartcal.life
stem-visuals.com
taiwanisasovereignstate.com
tamilventhan.com
quotation.tenxor.sh
theremodelers.in
aliado.tofydely.com
tofydely.com
umangjethwa.com
tup9.unstop.live
dashboard.useattic.com
uatuser.vnmrental.com
staging.wespond.de
www.wevois.com
wnatechlabs.com
doc.zaack.io
zerohours.app
Other domains in certificate