Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=pingstvanersborg.se
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 27, 2026
Valid Until
April 27, 2026
82 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:53:EE:7A:28:41:89:83:B8:96:21:9F:C1:33:D5:3C:69:E5:2C:B7:27:D1:6A:DD:8E:BA:DE:42:7D:B7:0E:78
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.applearcades.net
web.beta.77app.com.br
acesphereai.com
app.acesphereai.com
interview.acesphereai.com
www.afyrat.se
admin.allsports.plus
amineichou.online
habilis.app.br
sigma.cao-kappers.appdashboard.nl
qa.apptist.app
resale.apptist.app
atelier-lesacher.fr
atlcopticbasketball.com
www.atriastrology.com
attirestudio.pk
www.attirestudio.pk
ammuri.axenintel.com
baznaskotasurakarta.com
beiqi.autos
bilalarif.com
blkqapp.com
lardennais.botshare.io
www.brusketa.fr
candordigitalgroup.com
nyanya-rocket.carameldunes.fr
www.ro-service-patna.co.in
codeharvest.ai
uat-covenance-risk-management.covenanceglobal.com
www.dbln.me
myla.serverless.aity.dev.br
auth.dharayana.com
dev.eceblox.app
educatubilletera.com
www.emoji.kitchen
euphony.fr
familia-domain.com
follow-up.no
www.forensiclab.mn
www.glocalsummituae.com
james.grffn.me
hatchee.net
www.hueai.ai
imgtoweb.online
innovatio.com.mx
tender-app.itmedia.io
jalinsava.com
www.jiangfengpeng.buzz
www.jmck.dev
app.joi.events
mazars.kudosone.com
career-brew.kwang.com
careerbrew.kwang.com
www.lalchimiste.club
lecturesnap.online
www.leesabonnement.nl
lenv1.tech
longhornlhltd.com
piano.mangveloper.com
markittrade.com
meurope.org
momentum-games.de
www.mustafametalmart.pk
user-smaedu.my.id
myval.buzz
itms.nextcoreai.in
cardcaddy.niceworkdone.com
app.numanity.us
oblivion-rsps.com
fishfood.onearq.com
oppex.io
treats-uat.order.place
paste.payleen.cfd
pingstvanersborg.se
mspages.pizzabunlab.com
pungbok.com
www.q6a.com.au
www.rentwithbrothers.shop
widgets.saleswidget.ru
sasrismart.com
florian.selent.me
cms.shotclub.it
smashsnack.com.br
spadesqueen.ru
srjjph.com
seller.stonepedia.in
thailandtomorrowland.com
thefuudapp.com
www.thehealthinsmarketplace.org
thehole.vip
www.theta90tech.com
www.thevedicmath.org
timmermann.com.br
www.uppli.fr
payroll.uripgumulya.com
rw-essen.vebasoft.com
auth.google.vipnetplay.com.br
wirebird-digital.co.uk
www.wirebird-digital.co.uk
www.xamx.app
Other domains in certificate