77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.vunzagroup.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 24, 2025
Valid Until
March 24, 2026 76 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:F4:2C:3D:53:A0:78:16:EF:A9:3D:05:E8:2B:34:7C:1A:05:EE:C1:D4:F8:79:67:BF:07:4A:4E:E6:02:63:42
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.damagedluggage.com

Other domains in certificate

www.anthonylacheny.fr
app-marina.de
azfalte.arbg.bike
www.architetivedesigns.com
www.banklogshop.mp
www.benjibooks.ch
nanterre92.deeplinks.bfansports.com
www.bolerosmets.be
activeindoors.breadcrumbdata.com
front.cardapioweb.com
carouselsplitter.com
www.chatpay.com.br
condomini.io
www.danieljuhasz.dev
maratondelamarina.dashport.run
davideaccornero.com
deltyo.net
homologacao.drtis.com.br
estaragroup.com
www.farhananjumhaque.dev
docs.firialabs.com
fliddos.com
www.flowerstoqatar.com
fondationulb.be
cms.livy.foxhub.space
www.getskip.com
github-summit.com
www.gregorygaines.com
formation.guillaumebardy.fr
helpyadmin.helpy.com.co
track.himammas.com
dealer.howardsongroup.com
web.dev.inquery.hulic-agency.com
happy-tummy.intellisupplies.com
jentrydayceramics.com
links.email.justapinch.com
contact.intg.keap.page
kidstronguniversity.com
korean-letter.com
larsmiloni.com
leanovatesolutions.com
app.loggyconnect.co.za
loiddy.dev
links.lumecaapp.com
mathmeetscode.com
mattec.se
www.mektepp.com
moderncaremodelsllc.com
mulberryheights.com
naomi-int-travel.com
www.nearlywedded.com
www.neogenesis.au
pruebas.neumobot.com
man.next-audit.de
www.next.date
ntreader.com
betaqa-candidate.offerdox.com
onesmallchallenge.com
open-ti.org
www.orlandorvrepair.com
tretyakov.orpheo.cloud
osxperts.com
othotuld.com
overlap.live
login.weekplanning.gcp.ovs.it
app.preprod.paymytable.com
allquick.pcm-tools.nl
philiplapinski.com
www.photoeditorsdk.com
caesium.photon.software
play2x.ai
www.playerplayerpod.com
app.plusfleet.com
dev.plusscommunities.com
www.poemstudios.com
pousadaaram.com.br
pricenpay.com
demo.processshop.com
ftcchatengine.proxtera.com
pupusas.co
app.qalqi.com
qutroboticsclub.com
resyncdevs.com
rispectra.com
partner.rturn.com
s-fellows.xyz
sfhardwaresuppliers.com
www.sk-global.biz
solardawg.com
lp-digital-owner-2022.spotsuku.io
www.st6.games
www.superconnector.com
www.telepuntotecnologias.com
www.thehaileselassie.com
www.turtlewave.art
upnext.in
vantage.fi
www.vunzagroup.co.za
www.vzz.me