Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=zarposh.in
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 22, 2025
Valid Until
January 21, 2026
71 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6E:B6:17:DE:3E:81:89:4D:76:14:11:A8:D5:91:E7:93:FF:F6:55:4B:66:F3:DE:CB:B4:D1:3F:81:B9:98:77:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.icashcard.us
albemala.me
cdn-wa.alpesdata.app
www.amunoz.tech
arsenii.dev
ingresa.asistensi.com.ve
www.atakavame.com
baitisraeli.com
www.bookaclub.com
calculatorpro.app
www.campusquiz.de
auth.cclip.app
chappo.io
chatwhole.com
ultimatetictactoe.chrestin.dev
stratus-sample.cloudburststudio.com
www.cleanbox.co.il
www.codelouis.com
www.cometonwa.com
play.comini.in
cornerstonebuildersny.net
cyr-transportes.cl
czch.cz
dalalstreetcalculators.com
danielebaronio.com
davecore.dev
deb8er.org
disneats.app
g.drona.pro
www.esiha.tn
dev.farmacare.dev
fastproject.co
fleeced.me
authenticate.flowhk.app
cc.grevling.dev
harshsharma.net
ignacioaraya.cl
partners.infusionsoft.com
volodymyr-kateryna.invito.link
www.jaspil.com
www.jfdr.dev
auth.google.jotafplay.com.br
kaar.care
kiddi.zip
kidskorner.org
klucznik.net
lazeezdesserts.com
app.listalert.com.au
auth.lslauctions.com
mamontspace.com
purchases.mimyk.com
mipig.co.jp
mm-db.com
www.monetizeflow.com
mvibn.com
app.myonlinecoach.io
client.neo-atatter.com
ask.netmail.eu
www.nocommaclub.com
ariyalur.onewaydroptaxi.co
bangalore.onewaydroptaxi.co
dharmapuri.onewaydroptaxi.co
kanchipuram.onewaydroptaxi.co
nilgiris.onewaydroptaxi.co
optiker-verzeichnis.de
oxfordhindutemple.org
asos-app.oz-tms.com
app.photoprintsnow.com
www.pianolessonsstalbans.com
www.pointpost.app
principaldayalsingh.com
www.principaldayalsingh.com
www.purdy.info
rentonions.com
ricardoamoretti.com.br
web.savin.app
schronk.net
caregiver.sios.life
buyer.stockbot.in
stpauleye.com
www.streamcompanion.app
control.stg.study-habits-dh.com
sudburypetition.co.uk
app.swiftlaneshipping.com
www.tbst.app
sso.themeateater.com
tiborbuzasi.com
nj.tidalforce.org
tisaiot.tisalabs.com
treesorgardens.co.uk
triktreat.com
tristayard.com
www.underdev.org
link.vapetool.app
victoryubelt.org
vietasia.com
volunteersimpactinitiative.org
vsunpharma.com
zarposh.in
backend.zeaeye-development.zeaeye.com
Other domains in certificate