Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=egypt.solomonschariot.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 21, 2025
Valid Until
December 20, 2025
34 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
16:B6:F1:C8:F0:0E:F1:F7:F3:3E:6E:85:3C:3C:00:61:CE:00:3C:CD:8E:3B:64:3E:6D:8E:9E:97:A9:0C:C1:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.nagatani.app
laz-sectional-test.3dcloud.io
lowes-bom-recipes-test.3dcloud.io
3ddour.com
ggscop.ac.in
achartaboutnothing.com
www.africaautomate.tech
ag-nisp.co.uk
amrein-und-soehne.ch
andreimaxim.uk
app.aninetid.fun
blog.arttada.com
quanticobank.atlanticbank.com.br
benchpass.app
www.blurryrobot.net
bmingenieure.de
qm.vetspire-extension.bondvet.com
yes-furniture.borintechs.com
link.buksapp.com
photo-video.at.calculatorhub.app
checkers.california-games.com
3eprojekt-uat-backoffice.cbdata.cz
www.chunet.org
app.clearinspect.co.uk
link.codig.ec
www.courtneyabele.com
www.curio.net.au
sourcing.bnn.cytx.site
lights.dermaddis.de
doccly.app
dominiksipek.info
clasificados.elheraldodechihuahua.com.mx
www.ella-guesthouse-srilanka.com
beta.esker.app
exelounge.hu
au.familybyfamily.info
fasatec.info
francis.im
www.taskmap.g2solutions.io
agestra.galvintec.es
indemnitevelo-dev.geovelo.fr
www.gowtix.es
hometask.mx
www.igros.app
schaeublin.immodigi.app
inertium.app
jakubdvorak.it
konf.in
legi.app
lekkersnelbezorgen.nl
www.magicwand.quest
matumotoyuri.com
mavroupasonline.com.br
www.maxi-xlri.in
dragonblue.meander.media
www.mi11er.net
mocdoc.net
motolog.app
report.mynt.in
mob.naqqe.app
provider.neuromodec.com
promociones.pidelope.app
purplewave.portal.plenadata.com
marketing.pmreferralapp.com
www.priceofglory.games
worksiteaxa.quattrocrm.mx
rashtriyamilitaryschools.com
raundsfestival.com
ravishankardubey.in
www.repropathways.org
www.restaurantefutu.es
cc.ribar.hu
sawai-sa.com
shortjob.app
egypt.solomonschariot.com
swipe-up-now.com
szkolenia-excel.pl
www.admin.teampuli.com
www.technick.io
www.terpity.com
level-bot-widget-stagex.thelevel.ai
tnr.lol
toolset.one
topdrivegroup.com
www.trashfusion.info
chronosfit.turnosweb.app
stage.ericsson.quiz.thrive.uk.com
unityimaging.net
universaltech.io
vaancure.com
www.virdicricketacademy.in
www.virtualweb.app
www.wearelanky.com
wheelchairskillsacademy.be
www.whenavailable.com
www.xahria.org
acaorenove.matrizes.yatto.com.br
eservices.ynbcci.in
www.yndooo.com
www3.youdocms.com
Other domains in certificate