Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=glamisrecoveryinc.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 06, 2025
Valid Until
January 04, 2026
51 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:2E:E9:76:11:3A:FF:E7:F8:22:03:2D:D6:BC:BD:09:03:7D:F3:FD:65:AA:B2:13:B4:3B:62:11:60:DB:A2:E5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.benjiwong.com
www.21dayschallengeapp.com
ajwd.media
androidsleeptimer.com
appcompass.nl
vision.arketiks.com
app.athleteanalytics.net
api-docs.attractions.ninja
system.aumartemec.com
breathe.awakening.systems
www.ayricsystems.in
auth.bet4.pe
auth.betmexico.mx
www.blinc.pl
taxhistory.brooklyncoop.org
bugsio.com
finn.co.id
www.coddy.tech
info.autobusysrem.com.pl
confsquare.com
crabs.life
diegogarcia.mx
mycollections.dpd.co.uk
www.effekt-raad.dk
www.einfachanstellen.com
eldhoseshaju.online
live.eluv.io
www.escode.lv
exactlink.co
reuben-roy.explosion.fun
firelayer.io
stream.gakuseiguild.co.jp
sua-stage.glambox.com.br
glamisrecoveryinc.com
spomin.gnada.si
agent.growpee.in
www.guido.vc
www.gumi-futomu.hu
helmetfirestudios.com
www.hiveway.dev
demo-preorder.hotwax.io
www.href.place
www.imexvetperu.com
grading-dev.ywc.in.th
ishraq.in
yasumi.jjp.jp
jnatera.info
jub-mueller.de
karinkids.ro
www.kopis.io
kron.wtf
agent.kwikpay.in
live-quiz-admin.logicwind.co
am.mamastar.jp
patient.medme.life
genesis.mightyhive.com
tdf.moxd.io
www.mpokataslot.org
portal.myparking.io
www.ndhbr.de
dk.digiconsult.net.in
next.date
app.nlightn.in
www.northtec.io
app.novanegociosimobiliarios.com.br
app.nucast.io
wb.nucor.report
staging.assets.orai.us
orthogonalresearch.io
www.perspectivas2000.com
portoshanghai.com
www.ramadanorphan.com
rehabilitacionlafuenfria.com
repfuel.net
my.rowx.app
thirdcentury.salem.edu
santiago-gea.com.ar
satisfy.com.mx
www.schapiro.biz
audio.selimcan.org
www.shopmag.com.br
www.shuvro.me
www.smapcrms.com
docs.smartmod.io
www.sophi-fy.com
spark.vlaanderen
www.stormyapp.ai
app.strikepay.co
bodaaguirreramirez.swanmoments.net
stores.tendercuts.in
admin-stage.the-talent-accelerator.com
thevisitation.org.uk
catchments.triply.ai
www.tucochera.mx
www.veterinariauniverso.com
war-game.io
app.wekita-welt.de
forage.womp.nz
staging-link.wondercise.com
x5s.me
Other domains in certificate