Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=links.jakob7.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5D:60:A2:FF:CD:2D:3E:83:39:87:E8:7D:E9:CB:2A:19:0F:BC:C8:E0:8B:D6:42:B1:38:D0:37:18:8B:9D:3B:8E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.conectadord.com
www.apartamentosalmazara.com
apparoquia.com
whotels.appsiste.co
konferenzcatering.aramark.de
okta.beaconforce.com
ride-stage.bellme.xyz
www.bienestardigital.cl
portal.billseye.com
www.blaser-engineering.ch
www.blazemarketplace.com
card.bonk321.com
www.briandelalcazar.com
www.blog.bynem.com
manage.caderio.com
portal.campusapp.app
canvascalculator.com
www.celestececchi.com
chatterbeats.com
poriyaalar.co.in
brisks.com.sg
commfire.com.br
unicornios.comounexperto.com
contentsoftit.com
criticalshiftgames.com
cubesplash.com
datailedview.com
app.datenschutz-manufaktur.de
appstaging.desidime.com
angular.dev-ptera.com
cms.digitx.co.za
discoversparq.com
dualines.com
auth.dynapik.com
eleaapp.com
boltshare-ai.eric-solioz.com
school.ericodarmawan.com
www.estherbalboa.com
www.exploroff.com
femalecapital.nl
financeagle.com
www.firedevs.cl
www.framecottageoptometry.com
futuresoftcompany.com
www.g-p-f.jp
test.gasmexapp.com
www.gorillasports.shop
www.himmobilier.ch
presmerovani.homecredit.cz
ibuildproduct.com
webpush.imobsoft.com
inkoop.in
athensairport.inseat.menu
eu.intuitivedigitalexperience.com
tudo28.io.vn
itointl.com
go.iurl.one
link.jadiprajurit.id
links.jakob7.com
jmlindseth.no
www.joinvolunteen.com
latentimagedesign.com
linkkader.com
www.lowb.me
zak-dashboard.development.mimic.com.br
www.myrentokil.com
reacttest2021.nothof-igb.de
ru.novacash.co
url.omenahotels.com
www.translations.org.in
app.petchintai.com
praha-inc.com
live.prosperomedical.com
math-contest.proxima-ai-tech.com
me.raeon.in
www.rategalaxy.com
shortlink.rededor.com.br
clara.rocola.es
www.thalos.roycetrading.com
app.seowritee.com
www.shar3k.sd
staking.skey.network
sweetera.de
app.swiset.com
admin.tacoslosangeles.com
tgreen.solutions
www.thepour.club
links.thoughtfulpost.com
todo.210.company
tspsolucoes.com.br
unetee.app
viacolibri.com
linktrn.ffm.vic.gov.au
vulpp.com
wethankyou.fr
viz.wiijii.co
clock-classic-soft-1.wiselywidgets.com
youluckydevil.com
yuntas.pe
zaa.sa
Other domains in certificate