77/100 SECURITY SCORE

Certificate Information

Subject
CN=segfaulty.dev
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 18, 2025
Valid Until
January 16, 2026 47 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:A0:72:C1:7D:F3:FB:44:6A:DB:4A:C4:E1:E0:3A:51:EB:71:A0:8A:50:11:23:C1:E8:19:77:73:C6:73:55:A1
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.digital-dandelion.com

Other domains in certificate

tuvueltoya.dev.3dlinkweb.com
stage.abilitaxr.com
aikidefensazonasur.com
aksharahome.com
alphadeltagames.com
amiunderpaid.ai
link.amybruce2018.com
www.appxamine.com
arenapremantura.com
asharksfishbowl.com
datetime.babaaman.com
box.baidustudios.com
www.brewy.dev
breycreative.com
api.briskery.io
confluence.buuky.app
chatterform.com
provider.ciandx.com
cts-prod-api.closedcaptionconverter.com
upload.dev.cloudlift.app
console.dev.cloudthrifty.com
rloffice.co.il
www.greatexport.co.in
codekeepersinc.com
coinparliament.com
portal.coveidentity.com
dadjokegenerator.com
demo.daglo.ai
app.dascue.com
deadcamperyt.com
www.deepsense.app
www.docs4d-rpm.com
dytmustafayontem.com
www.echoldings.llc
enekocat.xyz
evoquelog.com
exodussailing.com
dev.fitmydiet.com
login.fni-stl.com
foto-albums.nl
www.galaxypharmaeg.com
ghardailosamma.com
goflow.space
link.toggle.goglix.com
lions.gooddevelopment.studio
gravitydenton.org
griffinspetcare.com
hanto.app
es.hash2cash.app
www.heyimjoran.com
portal.improvix.com
ingogo-hub-test1.ingogodev.net
dev.instasalon.beauty
inzee5.com
itw95.com
www.jdigimedia.com
www.jjimovel.com
maximare.kidletics.de
api.kyhastudios.com
dart.ladevzo.com
admin-dev.lifebox.net.au
pflanzenwelt.lisa-kretschmann.de
mahmudahossain.com
www.mirrorhomeo.com
mrbrackins.com
www.myguyonline.co.za
muh.noraylab.com
widget.parkable.com
genneia.parkalot.io
app.pedalry.com
pinnaclecabs.com
bestellen.pizzeria-allago.de
poshpadsrealty.com
premier-pump.io
primeaxiscapital.com
principalperson.com
auth.raos.io
review-gpt.com
ruhisood.com
sabrinaruehl.de
segfaulty.dev
shaynendlovu.co.za
shrlrn.com
sidewalksidekick.com
citystudycentre.snapmentor.no
app-link.syodai-marugen.jp
tadhastudio.com
link.terveystalo.com
tiendatec.com.mx
level-studio.timp.io pilates-sabadell-cerdanyola.timp.io
trademydevice.co.uk
www.travelkevinbkh.com
www.tutoringtutor.co.uk
mwd.vaibhav.zip
www.vanbruysselinstallatie.nl
vidhifinancialservices.com
www.wereport.work
rtv.zasti.app