Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=otcmanager.ctrise.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 21, 2025
Valid Until
March 21, 2026 85 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:25:E2:85:53:CD:62:6D:42:45:DC:29:3B:A0:8C:88:7E:EE:CB:59:72:D0:5C:75:29:23:61:E9:95:B1:CB:12
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.longshot.in

Other domains in certificate

acmogram.acmos-sbj.com
adiconpanama.com
flix.ahazou.com
aqms.gmbh
artuvan.com
www.automotiveprestigeltd.co.uk
basilanalytics.com
sihnebt.binni.co
www.bonsucessoseguros.com.br
bookme.as
app.cadreho-portage.fr
catalyc.ai
www.chat-ai.lol
www.cleverbuild.io
codifying4u.com
link.trplus.com.tw
otcmanager.ctrise.org
delpierre.net
link.egnite.demigos.com
www.dokkal.com
dots.wiki
admin.drbhupenhazarikadrsurjyahazarika.com
jfce.drtis.com.br
www.elmosbah.com
app.feuerwehr-arbon.ch
qr.fotowings.com
admin.fourem.com
get-luck.jp
my.geysir.is
tns.hffmr.com
blog.holded.com
inventorycount-dev.hotwax.io
www.icesport.it
ichigofoundation.org
jamb.kr
jeremysun.me
www.jesuscmx.dev
pickupwhatsapp.juguetron.mx
www.staging-money.k-9apps.com
teclab-predev.klarway.com
www.kyntek.ch
cti.play.medeintegra.app
datasmart.medismart.live
partner.metsights.com
michael-bouwer.co.za
multicart.mikmak.tv
app.minibusiness.gr
indexnow.monsterplugins.com
naphatw.net
www.nata.house
neblarvoice.com
nutch.be
omnivoreworld.net
www.onewayoutstationcabs.in
m.store.optimxsports.com
pechinchaai.com
widget.pickcel.com
auth.power11-fantasy.com
seats.prioticket.com
friends.re-ynd.com
www.rentd.ae
www.retirame.com
rezolut.app
www.satoshishellz.com
organizadorsar.signandrun.com
sinapsys-sa.com
skolaindigo.cz
slimesanctum.gay
snapdine.online
imputaciongastos.snoopconsulting.com
www.socialdatapro.com
alpos.somstack.com
share.stage.soniccloud.com
www.spartafitness.lk
auth.sporim.io
www.sportscapital.io
docs.statlas.io
www.streamplayer.net
www.swarmop.com
synamic.au
auth.tacter.com
www.texasstylewrestling.com
thebarrhouseinn.com
theclimb.app
tiposdecambio.es
www.tonyosor.com
www.ttmrenovatenonthaburi.com
uapplyabroad.com
veterinaria-jalisco.com
www.app.vetlify.in
vinsanet.com
www.virginiasquarecondo.com
idvalidate.virtualsignature.com
beta.watafan.com
app.we-build.ch
nectar.westling.io
whatsevr.com
app.wordkraft.ai
admin.fujisystem.wowdesk.jp