Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.davidcobbina.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 06, 2025
Valid Until
January 04, 2026
49 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:9F:28:FE:82:09:F1:A8:06:84:00:A1:2F:54:CA:A4:E7:DE:80:97:F6:9B:9B:87:60:02:2E:DF:6F:C0:CC:93
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.davidcobbina.com
go.3harmfulfoods.com
aict.aimmo.ai
dev.amiti.online
appi.cl
armyleadersbook.app
arqbim.cl
www.autoskopen.eu
bryankenneth.com
beta.builder.io
appauth.canvidapp.com
tech.cha-chi.in
drr.logicspace.co.th
mobile.casham.com.do
www.creativemaybeno.dev
development-app.cst-assistant.com
user.dataflexor.com
testing.session-management.dataplace.ai
dcprincipal.com
ingenuity.deskbooking.app
api.doid.dev
durandenterprises.com
www.eastbluetech.com
wordcounter.easyling.com
advent.elipslife.com
www.elmshore.com
www.em3law.com
complus.enordigital.com
signup.evertransit.com
devis.fierensconcept.be
staging.fitnesspilot.com
app.fitreflex.com
gamerstudios.dev
golearningsource.com
dow.goodgiving.com.au
share.gostore.app
app.dica.gov.mm
greatjoy.today
heifergrowthtracker.com
moreapp.houer.com.br
incloudusa.com
autocars.intelliapp.com.br
iqchat.app
www.jeveuxtravailler.com
app.jofanetwork.com
join.how
jyacot.dev
www.k3-sportmanagement.com
external.kards.fr
karthikdattu.com
kronno.com
www.locketcamerabeta.com
www.lonefisher.com
links.lucrasports.com
marketingcontactcenteraxalta.com
www.markusdunkel.com
www.microplastic.io
salesplanr.midteide.com
minefavoritter.no
www.momtter.jp
www.mundodatastore.com.br
myhopeplan.org
corpo.noticia.ca
chart.novorpm.com
candidate-mvp-redux.offerdox.com
staging.oglethorpelodge.com
opticred.optagestion.cl
www.dreamtech.oshanrasanjana.online
par-t-cart.com
admin.park2cruisegalveston.com
passive-income.pro
www.passthebla.me
pawsitivelylochem.nl
pivotalvaluedata.com
planetebleue.art
www.platinumdesk.co.za
portablehome.co.nz
kenshin.portal-yufu.jp
provement.se
analytics.qa1-raksul.me
redact.at
www.redmedia.com
www.royalhut.games
admin.sailcourier.com
saludjusticia.com
saudistatus.com
sharangpai.me
mission.skore.dev
auth.stick.education
www.strack.ninja
www.talkone.com.br
www.technova-developers.com.br
rebecca.teedteed.me
dev.trainingsmag.net
traxise.com
tripletize.nl
unibit.ai
vacatube.com
villeband.com
vuyio.com
Other domains in certificate