Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=admission.litedemy.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 05, 2025
Valid Until
January 04, 2026
34 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B5:70:F5:45:69:16:FF:70:92:7A:1B:73:1C:C2:1D:0F:5B:09:80:96:0F:4F:00:B3:A7:88:1C:3B:C9:AE:E7:DC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.borderhopper.net
20224999nguyenviethung.xyz
www.21mmpixels.com
365go.in
snscp.3th.biz
bigdog.abccopyco.com
bigdogs.abccopyco.com
www.abniks.com
dy.abogher.com
www.aculix.com
www.adfast-grommeting.com
app.adviate.com
www.aliadoc.com
www.amadornes.com
app-legal.amanur.com
test-admin.amoganardinero.com
cmm.anagraph.io
www.analogpics.com
forkyou.andrewdebroux.com
onecolors.angelcareaga.com
www.anishmprasad.com
staging.appearedin.com
lappa.appscifi.com
kakeibo.aprifield.com
regular-clipboard-cleaner.aprifield.com
arnaudbenassy.com
arora-services.com
artiqueltd.com
asassystems.com
atasporumuzgures.com
atgrapevine.com
autodiesel-donetsk.com
dev.qr.basil.menu
bekbakes.com
bitconly.com
mgxes.boaga.es
signup.boo.dating
web.byggkollen.se
www.pluginsoft.co.kr
staging.compfeed.com
app.coupocket.com
auth.creatormagic.ai
staging.bizadmin.food.cururucu.jp
drelogbook.com
corner.essaouira.eco
exitzeroproject.org
skyline.f2bportfolio.com
lacornedor.fastorder.sn
scagentbo.gamewalletuat.com
dashboard.gohealthyandco.com
www.hadnu.org
helsinki-airport.fi
henriettadavis.org
bridge.holi0317.net
shop.hotshotsphotography.com.au
jankalinowski.fi
l.jwero.ai
leaderboard.kunath.co.nz
www.lalelitabela.com
cuiaba.legislativa.com.br
lexuandai20225271.xyz
admission.litedemy.com
staff.litedemy.com
student.litedemy.com
app.madeindreams.ca
cms.mathu.co.za
red.mayamd.ai
blog.motobase.jp
stockholmshem.demo.movello.se
publish.mylang.in
operations.naduvi.io
hackathon.nemtus.com
dashboard.nettingsuccess.org
anunciante.oddrive.com.br
app.okonomiyaki-honpo.jp
go.opanda.cl
shop.ordercloud.com
sepol.parkalot.io
picmeter.info
samyan-smartcity.pmcudirectory.com
prohlidka.praminek.cz
www.nova.predplatenaelektrina.sk
www.pronapp.com.br
www.rentevent-app.com
www.sami4apps.net
cdn.slenderstudios.com
events.streamlinedcampaigns.com
sumitbakshi.in
sunsetspots.ch
app.tapnotion.com
dev.techcater.com
www.techuntangler.com
gbmb.tecnotrust.com
monitor.tehpostach.com
www.termeszetes-medicina.hu
pamelding.tidtaking.no
dev.form.trustiway.com
schedule.turkishtradeshows.com
acaradeperro.turnosweb.app
www.zansoc.com
Other domains in certificate