Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=super.psichedelico.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 07, 2025
Valid Until
January 05, 2026
52 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0B:FD:E6:90:1C:2B:C8:8E:02:1E:AD:88:EC:03:75:79:70:E8:55:89:8D:00:15:3D:F0:36:E7:CD:A5:80:98:EE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.mechatronicas.com
1justinbarnett.com
www.2ysight.com.au
www.adityanandedkar.com
alanch.ooo
www.aldeebaj-med.com
s.alexpts.dev
www.anotherblack.com
dev.atypical.solutions
vaccin.biloba.com
procore.sihnebt.binni.co
mi.blancoyoga.com
chadthebeasthardy.com
clearplan.io
drively.myspot.co.in
mayahomestay.co.in
mppglobalservices.co.in
skitc.co.in
member.coachloai.com
bbm.com.pk
etsy.coolcold.co.uk
thescoop-orders.crispnow.com
app.curipod.com
endymion.dataequinox.com
deadfretproductions.com
dev.admin.dextre.app
digineeru.in
test.djradovan.cz
app.doctorina.com
www.domingapp.com
www.doorjames.app
service.dotapparel.io
playerjs-next.easysignage.com
eddylin.com
dev.mis.westlineschool.edu.kh
estilopropriostore.com.br
expressotecsalvador.com.br
www.farmhandapp.co.za
flozaar.com
link.foodle.su
www.forpetsbypets.com
www.forsuperearth.com
insights.gatedcontent.com
www.givesomegratitude.com
www.glypster.com
www.hacklytics.io
www.hfupdate.ca
www.holyfamilytv.com
js.hotelmeister.io
tranthanhanhtai.id.vn
inventioncloudperu.com
jasonjvarcoe.com
jonbecca.jonchiam.com
juhuresidency.in
justinlettau.com
www.karmacollab.com
kytet.in
liviuflutterdeveloper.com
m1st1ck.com
manueljunquera.com
maurinhopesca.com
menu-helper.io
techblog.mixross.jp
moffettpersonaltraining.com
moleculemaster.com
yara.mountainhops.co.za
nanotechsolutions.my
dev.nazotoki-bingo.com
plataforma.ceiba.org.co
our-company.ru
outboundly.io
portal.outdore.co.uk
pakoob.app
www.partytrivia.online
www.precmet.com.au
press5.info
develop.prooffactor.com
super.psichedelico.com
europe-cycle.rowans.page
www.rummagesaletracker.org
www.deposit.sebammon.me
links.sham.fm
singingbowls.love
sme-mv.sistena.app
siware.dev
interaction.soultv.com.br
www.spinningtop.it
foxtrivia.sqwadhq.com
sqzd.in
sriharibrs.com
auth.login.streamsets.com
ys.suppy.app
dev.teambuzz.io
technimitta.com
tjiahaya.xyz
upgradixagency.com
vertexpackagings.com
vikingsfordtailgate.com
www.vinodandraji.com
qa.yurigarden.com
Other domains in certificate