Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.vunzagroup.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 24, 2025
Valid Until
March 24, 2026
76 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:F4:2C:3D:53:A0:78:16:EF:A9:3D:05:E8:2B:34:7C:1A:05:EE:C1:D4:F8:79:67:BF:07:4A:4E:E6:02:63:42
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.damagedluggage.com
www.anthonylacheny.fr
app-marina.de
azfalte.arbg.bike
www.architetivedesigns.com
www.banklogshop.mp
www.benjibooks.ch
nanterre92.deeplinks.bfansports.com
www.bolerosmets.be
activeindoors.breadcrumbdata.com
front.cardapioweb.com
carouselsplitter.com
www.chatpay.com.br
condomini.io
www.danieljuhasz.dev
maratondelamarina.dashport.run
davideaccornero.com
deltyo.net
homologacao.drtis.com.br
estaragroup.com
www.farhananjumhaque.dev
docs.firialabs.com
fliddos.com
www.flowerstoqatar.com
fondationulb.be
cms.livy.foxhub.space
www.getskip.com
github-summit.com
www.gregorygaines.com
formation.guillaumebardy.fr
helpyadmin.helpy.com.co
track.himammas.com
dealer.howardsongroup.com
web.dev.inquery.hulic-agency.com
happy-tummy.intellisupplies.com
jentrydayceramics.com
links.email.justapinch.com
contact.intg.keap.page
kidstronguniversity.com
korean-letter.com
larsmiloni.com
leanovatesolutions.com
app.loggyconnect.co.za
loiddy.dev
links.lumecaapp.com
mathmeetscode.com
mattec.se
www.mektepp.com
moderncaremodelsllc.com
mulberryheights.com
naomi-int-travel.com
www.nearlywedded.com
www.neogenesis.au
pruebas.neumobot.com
man.next-audit.de
www.next.date
ntreader.com
betaqa-candidate.offerdox.com
onesmallchallenge.com
open-ti.org
www.orlandorvrepair.com
tretyakov.orpheo.cloud
osxperts.com
othotuld.com
overlap.live
login.weekplanning.gcp.ovs.it
app.preprod.paymytable.com
allquick.pcm-tools.nl
philiplapinski.com
www.photoeditorsdk.com
caesium.photon.software
play2x.ai
www.playerplayerpod.com
app.plusfleet.com
dev.plusscommunities.com
www.poemstudios.com
pousadaaram.com.br
pricenpay.com
demo.processshop.com
ftcchatengine.proxtera.com
pupusas.co
app.qalqi.com
qutroboticsclub.com
resyncdevs.com
rispectra.com
partner.rturn.com
s-fellows.xyz
sfhardwaresuppliers.com
www.sk-global.biz
solardawg.com
lp-digital-owner-2022.spotsuku.io
www.st6.games
www.superconnector.com
www.telepuntotecnologias.com
www.thehaileselassie.com
www.turtlewave.art
upnext.in
vantage.fi
www.vunzagroup.co.za
www.vzz.me
Other domains in certificate