77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.letshike.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 24, 2025
Valid Until
December 23, 2025 42 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C3:E7:0A:69:87:A8:4B:8E:52:85:38:11:24:36:42:B0:BE:8B:35:EA:70:33:3C:4C:02:B3:6B:A0:45:6F:7F:82
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.aux-quatre-vents-france.fr

Other domains in certificate

estabelecimentos.acessocriativo.com.br
www.adventurebikehire.co.nz
agploy.com
www.aldiafah.net
links-tracking.alltrippers.com
raion.amnotify.com
app.annoframe.com
easylife.app.br
production.gustav.appculture.com
www.aranalbandian.com
www.aree.ba
atheneasolutions.com
www.atstk.com
bitesbridge.com
bluerippledigital.com
bradleygraham.net
bradwhitfield.com
dev.bukabuku-online.com
casturl.com
catalfotechnologies.com
celebsapp.com
ecc.cems.app
admin.cgame.app
gyprocpro.chococrm.com
john.ciocoiu.nl
www2.ewalker.com.hk
cpak9.com
decofurn.co
dersinvitational.com
www.drugcare.app
eahanatuitions.com
micoope.ebol.dev
www.eluketric.com
engrammic.com
dev.epihelper.com
www.fiflboard.com
losamigos.hasanerdil.dev
legacy.homehabit.app
10thanniversary.hotel-graphy.com
babaloo.hrtech.com.br
app.hundefreunde-wu.at
ingeborgslegers.dev
innogehlalab-cmu.com
juned.app
link.kiyanpay.com
kkfield.com
www.kubrikdigital.com
kundukanyon.com
www.letshike.co
licitou.com.br
mentor-isd-assessment-dev.lifecycleinsights.com
www.lifescirec.com
www.line39.com
linelesslife.com
aomori.linx.live
www.ljits.com
dashboard.macademy.website
ecp.merchantportal.us
mistrygardening.com
mymah.site
mynutritionstation.com
offers.now-ins.com
www.nutraworks.io
parami.app
assetbase.partnerhub.co.za
investorinfo.powertopitch.com
dev.prek.com
premiumwebsitecreator.com
secrets.preoday.com
horne-vi-qa.psg-labs.com
int.pulse.cash
admin-staging-5.rapidsearch.app
bti.rebus.com.co
graficos-develop.rogeriossantos.com.br
saruri.co.za
sawconelectronics.com
portal.selvarajcrackersshop.in
shinefunctionalmedicine.com
sneakertopia.com
sonrisatattoo.com
www.southernclaimsolutions.com
devdl.spiconn.com
dashboard.spideo.com
graphitewriter.stomprocket.io
www.stonedgetech.com
www.studiomakercb.com
www.tetrasilicon.com
theelemenocompany.com
www.toca.jp
poplayer-staging.usertesting.jp
admin.vacctrack.com
www.vapaux.co
app.vaultwrx.com
watdays.com
vanaheim.westling.io
wowworks.tech
www.geniuswave.xittio.store
auth.xprofile.vn
chokomemo.zunchiki.com