Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.preparedkid.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 02, 2025
Valid Until
March 02, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:25:57:63:67:73:05:67:EA:B4:E9:3B:E3:26:50:60:29:A9:ED:50:7A:34:43:EE:49:EA:D0:97:E9:EC:7E:49
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.darshand.com
2gathr.com
ambient.alaphd.com
alkadome.com
appweb.agiledelivery.app.br
www.arcticecho.co.uk
blackboxbox.arthurrab.com
wallet-transfer-stg.astropay.com
ticket.avalongroup.do
www.baumlanus.com.ar
beecon.app
letremplin.deeplinks.bfansports.com
www.bilchuk.ru
casav4c.org
www.caseslogger.com
www.chaimnazeer.com
turing.charliehewitt.me
chessonsaccountants.com
civilsane.com.br
www.collectoral.com
cosmetics-and-more.de
coxhoeve.nl
ms-id.crewdle.com
test.databakkers.nl
www-staging.datafun.ca
daudlegrand.com
orange.deplike.com
djschleen.com
app.docuverse.io
dashboard.easternhimalayas.in
www.express3d.co.nz
fijofy.do
www.flagceletsbydary.com
floward.app
staging.foundershield.com
learning.freedomfromdiabetes.org
www.frontrangepetpals.com
www.geurmelder.nl
glampcentives.com
glenagon.com
glogg.app
vietnam.hackjunction.com
app.hermanpro.com
homezz.vn
app.iform.dk
al.indiagold.co
insourceitsolution.com
jsonformatter.us
admin.juggle.jp
kastamonufanilasi.com
www.localfarms.app
santa.los-sotos.com
mdisanto.me
mechanfo.com
mgphn.com
momas.com.co
moomugs.com
mortai.com
www.multiellos.com.br
mykoriak.com
www.natechristie.love
fbredirect.nodalview.com
connect.omaisha.com
overtimeam.com
portal.palabra.de
www.parlabranding.dk
www.pastaparmesan.se
peterdavidson.dev
www.phorecipesf.com
talentsscout.piticommerce.com
www.playmatchhq.com
www.playrafiki.co.uk
www.preparedkid.com
programing-server.de
q-app.me
qashiereats.com
hra.rcloudsoft.app
link.redpocket.gg
refricar.shop
ritvak.com
rooclub.org
enc.santo.digital
old.sensibly.com.au
sergeiten.com
m.shambhala-transition.org
send.sms.direct
aforrville.sphure.app
test-kap.stadtmission.app
stainedglassbuyer.co.uk
www.tackleboot.app
teqtiv.com
thebudgeting.app
crypto.tidalforce.org
www.tqualitywholesale.org
www.trpgcalendar.com
agent.dev.videolink.app
dev.womm.us
xcovers.gr
youvaraj.com
www.swift-hub.yxdian.com
Other domains in certificate