Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=fidelidade.moub.com.br
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 09, 2025
Valid Until
January 07, 2026
56 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:DA:AE:F7:68:8B:EB:6C:F7:85:90:70:B1:99:DF:FF:24:C0:27:A7:1E:85:66:BD:0B:81:3B:B9:7E:E5:6D:87
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.laurieontech.com
4-states.com
www.7vowss.com
stopovergewicht.aanvraaginformatie.nl
alegranti.com
animals.aliustaoglu.biz
ticket.mfs.dk.attraction1.ameroservices.dk
amezexpress.com
www.aoiteppanyakijapones.com
admin.appsiste.co
www.ashujainvi.com
assessoriadomovimento.com.br
applink.azadsandesh.com
www.bkaiser.ch
assetmanagement.bkbirlacollegekalyan.com
bluff.bet
www.brainilis.com
chakka.dev
chancertech.com
dl.charitable.be
cl.clatas.com
www.cumar.com.uy
www.curlstange.com
www.dannyglavan.com
payments-live.danubehome.com
driver.ddbox.com.au
app-stage.deskhunters.com
www.devintent.com
www.drtabassum.com
drtkeating.com
dtools.dtnexusapp.com
dtxdex.com
dyashin.com
biz.epesipay.com
punjabfanapp.fanisko.com
test-site-upcoming-auctions.farmgateauctions.com.au
www.fillin.app
www.flavioosh.com
magic.foodwaretogo.com
links.freeya-staging.com
prime.getwifireapp.com
mindyful.gig.bio
www.grownode.com
www.healthygrocery.app
histopad.histovery.com
movements.huynguyen.ca
link.ihoroscope.app
giottoapp.imsitaly.eu
adesso-staging.interviewui.com
app.irripasture.com
www.isswarrajgopee.com
grids.its-not.tv
www.khmumtech.com
kicksurvey.com
taskdev.kime.app
kpitechservices.com
nisaba-zami.kurnugia.com
lsborg.littlebitpositive.com
beta.londonhydro.com
madeself.com
makoto-delicious.com
malayalihub.com
mama-rhodes.com
markalester.com
www.massiv.cc
maxmarchuk.com
meandmyfarm.com
merch.africa
www.meta-show.co
monkeeys.com
fidelidade.moub.com.br
mspromanagement.com
myguyonline.co.za
meet.nandenjin.com
auth.nearfield.cz
www.octata.com
www.optimout.com
m-dev.orbitalshift.com
personalinjurymedicalcenter.com
pickabook.app
pup-sa.com
parking.q070.nl
ramblinstories.com
dl.readwhere.com
www.rehabilitationspsychologie.at
remi-marsal.com
bytebuilder-staging.rumie.org
www.surftracker.app
surplusolutions.com
taiwanteachermike.com
portfolio.terry1213.com
share.thatch.co
thereception.co
running-order-creator.tobarrajorge.com
toftunes.com
app.tourismnft.io
www.trenerkocur.pl
u-raid.com
www.ukrainawpotrzebie.pl
speedtest.watertechstudio.com
Other domains in certificate