77/100 SECURITY SCORE

Certificate Information

Subject
CN=hq.vutov.org
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 26, 2025
Valid Until
December 25, 2025 42 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A5:F8:D5:77:FF:5D:66:BC:79:FC:9D:33:B3:68:D0:C3:2A:3B:60:09:E0:DF:23:D3:DC:4F:66:77:CC:4D:E7:7E
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.mentorsandmore.foundation

Other domains in certificate

www.aarmando.com
fc01.acml.dev
admi.com.ar
www.aguasartesianas.com.br
app.akoinvest.xyz
andamp.com
consulta.app-supreme.com
www.bablem.net
app.battlefitapp.com
raleigh-tracks.bernot.dev
allianzmtvstuttgart.deeplinks.bfansports.com
bigtournament.golf
www.canoepololive.co.za
www.cavigliayasociados.com.ar
watdoejij-docent.citolab.nl woordmars-docent.citolab.nl
staging-admin.syncup.com.ng
vmts-cb.carclub.com.sg
s2test.crosscode.co.uk
www.cryptocrats.xyz
conf.dazzlebox.app
devondoesit.co.nz
hodlfolio.dotsilver.ch
link.ecademy.vn
elcajonhistory.org
old.enorm.app
www.envelope.li
download.eoptioapps.com
expert5.com
flightreservationsdesk.com
recipes.franciscoruiz.space
www.gculionscamps.com
georgelam.home.ginormux.com
baseball.gorout.com
app.gotgametech.com
share.healthbuy.tw
www.hugo.ventures
ibrahimalazzawi.party
dlink.stg.itsuoka.com
admin.jnjschool.org
www.jongood.photo
lagnaden.no
www.lanzatunegocio.net
bolsa.savethechildren.lapieza.io
lawntendernc.com
devhub.liquidcodeify.in electronic.admin.liquidcodeify.in
www.loropublicidad.mx
invites.lostislandblastadventure.com
www.lucaslab.dev
studio.luminopix.com
staging.maimee.dev
mainpart.eu
identity.malva.work
www.matthewtyson.dev
microdevworks.com
aoe2.neuwert.me
terminportal.apps.new.de
www.novigado.org
obacoders.com
it.oilwellness.company
enduser.stg.omotenashi.ai
orangehealthgh.com
link.orchestra4edu.com
parulfitnesscentre.in
personalfinancetool.com
blog.photoeditorsdk.com
phrog.rocks
pikulik.berlin
prefabricadosgbc.com
mlinks.cloud.proside.pt
publihazclik.com
biohack25.qdx.co
east33.reply.gift
rssdelsureste.com
sahelcrypto.com
www.sambender.net
www.satauriusconsulting.com
www.sealedprediction.com
shoreco.space
prod.onyx.site2020.com
softgreita.com
www.storymusic.me
szoloink.hu
tansycloud.com
thearenaapp.com
thecareerconnect.net
theflyylife.com
toonwoodstudio.nl
code.tranchant.dev
travelswithluci.com
vivektamilarasan.com
hq.vutov.org
w3lock.io
wfpbowl.com
link.yumdelivery.com.mx
zandkoop.nl
ziwidict.com
www.zsigmondildiko.hu