Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.lingwheel.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
28:83:40:7D:4A:49:5B:64:50:D5:94:34:DD:F2:13:19:24:D3:0B:BF:06:0F:25:D3:0B:3B:C9:42:5A:43:28:43
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.aydingokce.com
app.abbeiztechnik.de
www.adampeterson.tech
staging.agilitycoursemaster.com
cdn.aksiliasuite.com
www.ambitieaccountants.nl
bible.amen.cz
resume.anthonydellavecchia.com
www.apgiaainc.com
adventures.atol.vc
skill.aurorasense.org
www.be-on-top.io
bestmongolian.com
www.portal.bitforce.pe
api.blurb.fail
invite.careease.kr
chalkmenu.app
invite.clout.one
test.codeedoc.com
commute-calculator.com
computerassistant.app
covidcontroller.com
stg.crowd.fun
admin.d4dsplanner.com
app.d4dsplanner.com
deepthinking.app
www.doiliveinademocracy.com
www.donotdrawapenis.com
www.entityc.org
newwave.equiem.mobi
esbspeed.ca
esec.cc
flokwok.com
www.fooyungexpress.com
www.fullbeans.studio
futureil.com
staging.glassbox.one
godnews.kr
su.green-trust.jp
gregortega.com
www.guardianssmc.com.br
www.heartnsoulasks.co.uk
static.apps.idealo.com
educationlecture.indiandevelopers.org
veeraeducationgroup.indiandevelopers.org
www.jeroenmeij.nl
salesmedia.johnfowler.co.uk
admin.jourfixed.com
laathi.com
www.laibachsuite.si
landsraad.app
lenebaumans.be
leuz.app
www.lifewithautism.org
team.limbitless-solutions.org
www.lingwheel.com
nba.looking4answrs.nl
budget.lovelands.us
mediderm.co.za
dashboard-nonprod.middleware.co.nz
mobapps.app
tatatrack.mosfettech.com
www.multiviewforndi.com
www.nextlevelresume.co
midorepo.okiryoku.org
app.pamit.co.uk
porntopia.org
admin.porous.ai
tennant.portfoliolink.co.za
quitsmokingclinicaltrial.in
www.riccardopressiani.it
app.rolo.family
www.sandgroup.solutions
beta.sekreterare.nu
shivanshinfotech.ca
doctor.sidehide.com
shoeboxes.sjc.co.za
app.smartlivestock.ee
v-space-auth.smawork.jp
www.spheverse.org
www.spintax.ai
payment-staging.spont.cash
dev-app.sportscards.io
sustainable-matters.org
support.swiftly.africa
switchai.nl
www.therelief.in
tidalpaints.co.uk
tie-app.com
app.time4pet.com.br
tkng.org
beta.tokyomixcurry.com
tsubasafc.com
urbanspace-fashions.com
vitaly.asia
westerweide.nl
rirekisho.yagish.jp
yofitgo.com
www.zandkasteelfeesten.be
zaso.io
Other domains in certificate