Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=beta.sked.guru
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 28, 2025
Valid Until
December 27, 2025
37 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BA:CB:21:6E:5B:59:14:AF:45:D0:44:05:80:EC:67:92:2C:BD:5A:A5:8A:54:EE:30:35:7F:09:24:D3:6B:B9:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.ibeautycrm-plastic.lexcellence-grp.com
kb23.1337co.de
36m.uk
img.app.adiop.com
staging.alinkeo.com
admin.amebyana.com
ktp.web.appliedautonomy.no
arpithaexports.com
kb.avada.net
www.beardsandfur.com
learners.bethebest.ai
boulazacbasketdordogne.deeplinks.bfansports.com
fcchambly.deeplinks.bfansports.com
genoacfc.deeplinks.bfansports.com
gothiques.deeplinks.bfansports.com
grenoblefoot38.deeplinks.bfansports.com
heitecvolleys.deeplinks.bfansports.com
beta-admin.bidmii.com
bookimages.booksphere.fr
boutique-marketing-agency.co.uk
canopyintelligence.co.uk
parkeasy.chetvertkov.me
www.chitchatsource.com
padelseinajoki.cintoia.com
dev.account.clac.io
outcomes.clinicspeak.com
agent.shubhmoney.co.in
www.makebetter.com.jm
www.create-a-tournament.com
daheimladen.com
dataslots.org
diewithme.online
dikshitpatoliya.com
aop.early.vision
edxn.tv
www.electricfish.xyz
www.erioon.com
fairheadkenya.com
fivefamilyactivities.com
fluttercommunityibague.co
doc.greenswan.pro
crm-elephant.gridcockpit.com
www.happ-e-tax.co.za
www.harshitsharma.in
www.housekeyrealty.in
www.isatrainblocking11th.com
ismattworking.com
jamazing.band
www.jotik.app
admin.kanzaeg.com
kentkad.im
kenzsoft.com
letter.kingbillycasino.com
www.kmyes.com
kuuk.la
beta.leedus.io
www.legalfactory.in
trivia-dev.da.letsdive.io
trivia-prod.da.letsdive.io
www.logicgames.app
company.mandal.one
testgo.mebba.ru
merliniumiot.com
ijmland-ballot.mhub.my
midrandchapel.co.za
misterpushup.com
mtfridgerepair.com
www.nautiquiz.net
l.netoptika.ru
www.neuraccel.de
www.ollivere.co
rfadvice.partnerhub.co.za
www.playgeomax.com
psciai.com
docs.purrfecttool.com
sunnypdf.pvsc.fr
q.quex.me
shopping.rsshah.net
scorebug.online
beta.sked.guru
app.souqtajer.com
stage.superclass.co
support.test.tellow.nl
expert-preprod.tiime.fr
www.timosi.ch
top500fails.com
topmetrictechnologies.com
www.totsandtreasure.store
tristanscakesandbakes.co.uk
www.trustedfinancial.org
www.twkdev.cc
www.tzmartin.com
www.unifiedmind.org
box.unlockmy.guide
vaconsult.site
staging.walpoleoutdoors.com
beta.flow.waylar.net
www.westminsterrecoverycenter.net
www.workisland.xyz
auth.yourcar.co.nz
Other domains in certificate