Open
Cached
·
just now
75/100
SECURITY SCORE
Certificate Information
Subject
CN=play2x.gg
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 03, 2025
Valid Until
March 03, 2026
67 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5B:1B:A3:38:FE:D2:45:26:AB:11:33:C7:17:58:0C:83:81:64:FA:A6:ED:17:96:A7:DB:B2:3B:75:FD:D0:27:72
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.idrate.co
www.505swing.com
demo.abi.ai
addismind.com
www.addismind.com
adecuo.com.co
www.adekvat.us
posdeeplink.advn.app
brutal-bullets.albemala.me
tienda.alkimio.com
www.allcityprinting.com
ambermaps.com
www.amitchita.com
anissa.dev
trips.avasthi.com
www.barberjackhat.com
beanon.com
test-app.birramos.com.ar
www.brabaja.com
bristow.app
www.bryanoyloe.com
fat-lining.canceledsystems.com
staging2.operations.capgridsolutions.com
fire.cardiast.com
admin.castersociety.com
claimsgate.co.uk
www.epilog.com.hr
enlink-uat.dnse.com.vn
conectoenergia.com
www.cosmos-cloud.io
book.craftsanddraftsnc.com
csworkindiauatpassword.creatorofone.in
www.ddfrgroup.com
ddmcdanapur.org
www.dealercurator.com
deserttravelstours.com
restaurants.dorrio.pl
tecnicarafaelmarino.edu.ar
staging.clasificados.elsoldetampico.com.mx
kristof.engerau.com
hiringhelper.essilen-research.com
fairairportpsc.com
donboscosp.flockim.com
test.galeriasudecka.online
www.gdgyangon.org
portals.glomo.no
ballroom-admin.goodylabs.com
pqrs.migracioncolombiac3.gov.co
gracekbeck.com
tc.hakoniwa.net
get.humanforest.co.uk
login.im-at.com
buyers.qa.invoicenxt.com
www.kamalulquranacademy.com
keskoenterprise.com
kyaamodular.com
liremosaic.com
app3.lottoandroid.com
www.mgenio.com
attach.mikmak.tv
share.staging.moinmoin.io
www.molini.tr
console.monitor-center.com
morisplacecoffee.com
mymcdrewardsfindyourfavorites.ca
bienvenue-africa.mymotheragency.com
mypagex.com
nickadkins.design
www.dpa8600.nkportfolio.com
rechner.nominandum.com
ios.ob-talk.com
oh-tam.com
autotest-admin.omnicurenow.com
oreflow.com
parchate.com
paysavebf.com
www.phosphenearchitects.com
dev.m.pidedirecto.mx
play2x.gg
sflauren.policyrocket.app
app.propertyfinderghana.com
proximus-intl.com
go-ep.regage.io
visa.renatello.com
renewyouacupuncturebeautycentre.com.au
control-int.skykit.com
stage.admin.sliceq.com
pwa.suicidepreventionapp.com
tanglenguyenhien.com
gestion.tanguiimmobilier.com
thespaghettidetective.com
demo.trillionsale.com
kayakear.turnosweb.app
www.unthankful.club
link.vatrin.app
verevio.org
www.westcoastcoders.com
coop.wildweed.com
payment.yellotalk.co
website-dev.zooc.io
Other domains in certificate