77/100 SECURITY SCORE

Certificate Information

Subject
CN=shivamsrivastava.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 04, 2025
Valid Until
March 04, 2026 72 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F4:56:0D:C4:A7:FD:3E:87:BD:20:A7:32:0F:53:E1:7D:ED:40:64:9C:5B:07:70:09:F2:C6:2E:D3:5B:DE:85:84
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.freedom-shift.net

Other domains in certificate

dev-env.backstage.aestheticsmap.com
alorawilson.net
aprolabs.com
www.artdisplayscreens.co.uk
www.ascclab.org
www.aspiringgraduates.co.za
www.austinstudiotour.org
buy.storybook.bidscape.com
www.blue-dahlia.com
dev.boxado.com
brancabilance.it
www.brewbeer.ca
superadmin-dev.chekin.net
br.chillcom.store
games.irusu.co.in
tmw.luico.co.tz
recipe-book.codingshadows.com
admin.copticconfession.site
daxpharma.com.pe
deshkikhabarnews.com
www.domrealtygroup.com
tugsdelgerekh.edu.mn
www.etctraining.co.uk
widget-staging.ethy.co.uk
evantaylor.ca
support.fundwave.com
furry-online.com
agentathon.gdghyd.in
fabric.getviral.me
ggcorpsperkasa.com
giftcircle.eu
goldee.glameindustries.com
grainiq.in
www.green-piezo.com
greentekenergy.co.uk
gruut.org
measurement.helloomynameis.com
honest.plus
houseofswitch.com
hypersat.ru
www.iclean4u-ltd.co.uk
dev.picking-capacity.ingka.com
www.janitha.com
jcprieto.com
jordimelendez.uk
keithjr.dev
www.kidsandnerds.com
klas.tools
kotonoha.online
larissajohnsonbrown.com
lifetrack.tech
www.litarix.io
www.lubintalentsolutions.com
chitrakoot.mahsua.com
makebuddy.fi
www.memoo.io
www.metanoiahr.com
blog.micheam.com
moi-phone.com
www.mondoprodigi.it
quiz.mymoons.pe
www.nfg.wtf
onfadd.com
www.organiccinema.in
platinium.orhanarslan.com premium.orhanarslan.com star.orhanarslan.com
www.oyeleyeoyedayo.com
www.pensor.in
business.podsylive.com
books.prototypecode.com
dashboard.qvin.com
randombrewing.co
rivierachalet.ae
dev.robee.xyz
dispensa.scoutmorbegno.it
avishalom.shalit.name
shivamsrivastava.io
www.shor.dev
sistemasipe.com
slsu-marketplace.org
sparkhousedevo.org
spiritfaithministry.com
www.splitrideshare.com
uchealthjump.sqwadhq.com
srikanthravichandran.com
stb-pott-meyer.de
biscotte-plus.streamstudio.fr
taspasuneidee.fr
www.technititan.com
www.think2earn.com
zeroscuse-pt-studio.timp.io
www.tix.tt
www.tracetasks.co.uk
dashboard.waterscope.org
worlddragracingcircuit.com
money.xhuma.io
myntv3.zebuetrade.com
www.zeropointmaths.com