Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=affco.staging.m2x.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 27, 2025
Valid Until
March 27, 2026 88 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:33:EB:B4:EC:5D:47:E5:24:56:15:53:39:8E:6A:28:25:E6:42:C0:AE:D8:49:78:84:D7:EA:76:BA:1F:21:15
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.halal.ad

Other domains in certificate

abe1.com
auth.agently.abeja.io
acappolli.com.br
aceathens.gr
acrilicosmexico.com
advenxa.com
alexsze.technology
panel.altscore.ai
anytimemoneyonline.in
athmamanna.com
ib8-prod.bk8.network
www.breadstand.us
admin.catalogos-rapidos.com
certivox.com
clapclap.xyz
dev-candidate.cnect.jobs
calmnest.co.in
www.dac-repairs.co.uk
dadopa.cz
db-soft.be
admin.delishmall.com
mi.desdemalta.com
digitetti.it
app.docket.works
dotspot.space
identity.ecocenter.store
translation.funix.edu.vn
test.eta-technologies.com
schlauch-select.fierthbauer.app
gamemakeritalia.it
tools.gardenfrutta.it
www.garny.app
gencv.app
www.globalremodelingservices.com
gouvernance.app
core.hedged.in
howtomakefirstchair.com
imagedesigntools.com
links.infiniteinfo.app
dashboard.jaybox.com
www.kalyanibhagat.com
kamil-bobrowski.com
www.kisfali.com
aker-biomarine-okr.knowit.no
affco.staging.m2x.app
metalurgicaemsalvador.com.br
metriport.ai
frm.mileseducation.com
www.mohamed.co.nz
staging-msm-portal.moloco.cloud
mors-immortalis.ca
www.mslb-intellisoft.co.za
assessment.nervaibs.com
noxchat.in
web.p3rkstudios.com
panama.pedidosmuinos.com
www.philippgerber.li
www.planet-do.com
pokeforum.co.uk
app.preanestia.com.br
admin.pruoo.com
psykologlouisemunk.dk
pumpapp.app
app.quitapay.com.br
saborastationery.com
www.sadiqqara.com
www.saranonewaytaxi.com
www.savordi.com
join.scj.io
admin.sexcellent.app
link.sitata.app
staff.dev14.skool.sg
tudor.sky-boy.com
www.soilsolution.com
www.solon-labs.com
southernroots.in
steffievandendries.nl
www.stepworldapp.com
dashboard.taif-app.ly
alpha.teravit.app
the-tricktionary.com
www.thedowlinglife.com
app.thesmartflip.com
www.thesundewmall.com
zz2-compost.thinkninjas.co.za
vasavi.thirdeye.app
www.thryngabriel.com
pf3.tradeville.ro
tunysnotes.com
ultimateblackhistory.com
www.villamafideadelmaresalento.com
vintages.software
auth.voicetyper.net
vreaurelatie.ro
www.walue.app
workpermitpro.com
teachers.xqmath.com
applink.ykasandbox.com
youwot.co