77/100 SECURITY SCORE

Certificate Information

Subject
CN=super.psichedelico.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026 52 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0B:FD:E6:90:1C:2B:C8:8E:02:1E:AD:88:EC:03:75:79:70:E8:55:89:8D:00:15:3D:F0:36:E7:CD:A5:80:98:EE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.mechatronicas.com

Other domains in certificate

1justinbarnett.com
www.2ysight.com.au
www.adityanandedkar.com
alanch.ooo
www.aldeebaj-med.com
s.alexpts.dev
www.anotherblack.com
dev.atypical.solutions
vaccin.biloba.com
procore.sihnebt.binni.co
mi.blancoyoga.com
chadthebeasthardy.com
clearplan.io
drively.myspot.co.in mayahomestay.co.in mppglobalservices.co.in skitc.co.in
member.coachloai.com
bbm.com.pk
etsy.coolcold.co.uk
thescoop-orders.crispnow.com
app.curipod.com
endymion.dataequinox.com
deadfretproductions.com
dev.admin.dextre.app
digineeru.in
test.djradovan.cz
app.doctorina.com
www.domingapp.com
www.doorjames.app
service.dotapparel.io
playerjs-next.easysignage.com
eddylin.com
dev.mis.westlineschool.edu.kh
estilopropriostore.com.br
expressotecsalvador.com.br
www.farmhandapp.co.za
flozaar.com
link.foodle.su
www.forpetsbypets.com
www.forsuperearth.com
insights.gatedcontent.com
www.givesomegratitude.com
www.glypster.com
www.hacklytics.io
www.hfupdate.ca
www.holyfamilytv.com
js.hotelmeister.io
tranthanhanhtai.id.vn
inventioncloudperu.com
jasonjvarcoe.com
jonbecca.jonchiam.com
juhuresidency.in
justinlettau.com
www.karmacollab.com
kytet.in
liviuflutterdeveloper.com
m1st1ck.com
manueljunquera.com
maurinhopesca.com
menu-helper.io
techblog.mixross.jp
moffettpersonaltraining.com
moleculemaster.com
yara.mountainhops.co.za
nanotechsolutions.my
dev.nazotoki-bingo.com
plataforma.ceiba.org.co
our-company.ru
outboundly.io
portal.outdore.co.uk
pakoob.app
www.partytrivia.online
www.precmet.com.au
press5.info
develop.prooffactor.com
super.psichedelico.com
europe-cycle.rowans.page
www.rummagesaletracker.org
www.deposit.sebammon.me
links.sham.fm
singingbowls.love
sme-mv.sistena.app
siware.dev
interaction.soultv.com.br
www.spinningtop.it
foxtrivia.sqwadhq.com
sqzd.in
sriharibrs.com
auth.login.streamsets.com
ys.suppy.app
dev.teambuzz.io
technimitta.com
tjiahaya.xyz
upgradixagency.com
vertexpackagings.com
vikingsfordtailgate.com
www.vinodandraji.com
qa.yurigarden.com