Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=sellerie-valdeloire.fr
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 29, 2026
Valid Until
April 29, 2026
88 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9B:F1:A4:83:54:F7:8A:63:DE:6F:DA:6D:5D:59:83:FC:34:9C:3F:D1:32:1A:E2:0E:F8:8D:BB:80:78:DB:51:2D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
debtcat.com
www.debtcat.com
www.208busybeehandyman.com
aimoneymountain.com
ametory.id
srb-admin.anytechgh.app
arlpharma.in
audio4live.de
adp-dev1.avgidea.io
www.bcamsc.org
www.dev.beefast.eu
bemypc.com
bito.co.za
admin.bookbloom.app
buyfuture.app
buzzabout.app
castoasis.app
web.ceribbo.com
boletim.cesisonhoinfantil.com
planning-board-development.craftnote.de
www.dart-board.io
datasmartio.com
desifoodhub.net
envyx.space
ezfit.app
ficus.ai
white-api-docs.flexm.com
getaltima.com
ghananeeli.com
auth.ghostoffice.cc
glisspass.fr
datainterna.comseca.gob.ec
members.goboxmailboxes.com
admin.heny.app
www.honestfoods.com.pe
hrcomply.com
hyunjae.dev
admin.indamseeds.com
jigsaw-puzzle.app
johndoe.dev
www.karlqueckfeldt.com
www.katonakes.hu
kaue.dev
app.kendra.io
www.kidslib.de
lettersfromtheearth.xyz
lotus2000.xyz
lumomom.com
m0ttz.uk
app.maroud.jp
mealcircle.co
minidot.be
muslimjournal.app
www.mytedc.com
www.nguyenminhduc.me
www.officy.app
omnicycletracker.com
otaku.group
pasoveloz.com
www.pixel-me.tokyo
app.pocketcred.com
praxio.app
prestowholesale.co.uk
ooty.primeonewaytaxi.in
tirupathur.primeonewaytaxi.in
trichy.primeonewaytaxi.in
huitreriebesson.order.pulp.eu
qreams.com
qualtivo.com
www.qualtivo.com
quizit.ai
www.react95.io
rissosolutions.com.mx
sellerie-valdeloire.fr
sense.horse
auth.snowpixel.app
11520796.stratics.io
www.sunfruitegy.com
tarunsepuri.com
admin.terakiapp.com
thedxlab.com
thegracevine.co.za
themarketsentiment.site
www.themarketsentiment.site
thetaxchecklist.com
apps.timbra.com.mx
hi.todesktop.com
links.topviewnyc.com
trueedge.bet
baas.trytoku.com
banking.trytoku.com
unibooksal.com
vinzoom.it
staging.weflats.com
wodrank.it
woonig.app
yacht.ninja
www.yazhimartialarts.org
extranet.yourservio.com
yureto.ai
Other domains in certificate