Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=hound.nz
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 25, 2025
Valid Until
January 23, 2026
61 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:B6:D7:F2:32:C9:D2:54:7D:C7:D2:75:A6:45:4F:D7:76:3A:8C:74:51:FE:61:81:87:2A:18:39:0A:E6:99:33
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.hottingen-school.ch
www.10doors.com
mobileapp.6clicks.io
arm.alliancegrouplife.com
www.arasal.fi
campus.axiombr.com
www.bhinmalutsav.com
www.bluutopia.io
www.carbografedison.com
localit.co.in
srikanth.softwarecareers.co.in
www.convertgence.fr
staging.app.crosslog.life
app.cryptobucksapp.com
playground.cubes.cloud
www.dastaqlogistics.com
databasio.com
delib.tech
www.deseur.com
designfulltime.com
www.dicesol.com
www.dieteticsrefill.com
in.discoverani.com
www.doc4doc.com.br
www.dontileplumbing.com
auth.doulton.in
www.dremdarios.com
easyclaim.insure
lecoursier.eddress.co
tpv.eficiente.co
dev-cloud.elxa.io
ezist.enabled.world
alava.enercred.com.br
www.ericschalk.com
goals.evelynbauer.ca
www.evolisk.com
fairlogistic.com
profissionais.famyle.com
fazlelohanykhan.com
www.finopsy.me
port-sanilac.firepermit.online
13cabs-operator-test1.fleet-dev.com
forestcoffee.com.mx
frankroccamenswear.com
gaelicarts.com
try.getgrowflow.com
gfalm.com
www.gideon.pro
glossfeed.com
grupokocars.com
uat.gymflux.com
www.haditok.com
hicomseguridad.com
hound.nz
hxtn.shop
www.imagedesigntools.com
www.internationaldevs.com
prtrading.invue-live.com
ireneparada.com
www.jagersbouw.nl
www.japandawah.com
kioskoelboricua.com
kiwaxpress.com
rats.klevdev.se
www.konpuri.com
lhinfusions.com
llamates.com
loreatlas.com
lorware.com
markzuckerboard.com
matthewlichtinger.com
www.medhavimatrix.com
meinfriseur.online
www.naillabs.co
nh-gym.niklas-hauschel.de
parkthesun.com
pattechs.com
dev.next.pig-brother.com
demo.plpl.jp
app.radiorook.com
receipt.li
stage.rentopedia.net
responsible.company
docs.roxabo.com
ryspark.com
saurabhagat.me
chatapp.shiplux.com
www.shreyakhadke.com
form.sk-global.biz
streamprocessor.io
www.agents.prod.studentslanding.com
app.tagtimber.com
mint.urbanstructures.xyz
charity.vandromme.co.uk
victodev.com
service.unibiz.web.id
wildserenityresort.com
alightkinship.yac.com
zanna.finance
dev.merchant.zipeli.com
Other domains in certificate