Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=locumprofessionalsgh.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 28, 2025
Valid Until
March 28, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:69:70:E9:2A:06:5D:39:5B:FB:35:E1:1F:F7:87:CC:ED:C9:1E:6D:01:8F:AA:AF:5C:93:C4:85:1B:CD:34:4A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.pagedocker.com
dashboard.12traits.com
mvp.actualte.tech
abc-mail.aidemy.jp
airtime.lol
arcandbeam.in
archie-design.app
www.asrconsulting.in
dev.admin.autourdesparents.fr
bosphoruslabs.com
buddytalks.online
step.casspham.com
chaatmahal.com
clubamd.com
sales.dflash.co.id
contact.nishanth.co.in
admin-qa.cofaral.com.ar
businessdemo.collaborative.fm
crowoak.com
preprod.datalabs360.com
erp.dbskcollege.com
beta.decarbony.com
www.digu.io
www.djolonga.com
donateable.ca
dripciaga.shop
energy-cosmos.com
www.eventhon.com
www.fareplay.aero
farhadteam.shop
erp.greenfieldglobal.school
www.homeandmorestudio.com
ifthilifts.com
www.ifthilifts.com
www.ifthilifts.in
lifesync.iktiarshovo.com
note.infini-group.co.jp
www.izaanfootcare.shop
signatures.jogohealth.com
kajakiwrytlu.pl
www.kidsmentalcare.com
links.kingdomrushfrontiers.com
admin.koderia.sk
lacasadelconquero.com
nft.likejapan.com
locumprofessionalsgh.com
louelproductions.com
servicemap.ltl-xpo.com
maktourstravels.com
www.martand.com
mattlewer.uk
maulemining.cl
www.mazigma.com
admin.me-nutra.com
calendar.mentia-labs.com
michelefalsetti.it
www.michelefalsetti.it
mmrpsolutions.in
moonedge.finance
fathurdewantoro.my.id
nagamshop.com
www.narasirigreen.com
go.nursa.com
omfomomo.com
paengkorn.com
pahomesrd.com
auth.parawrite.app
aiyabarcelona.pedidomovil.es
plaxispython.com
pollduck.com
www.presidido.com
www.promereoltd.com
prod.qbasestudio.co
quoteninjabeta.com
qwikoapps.com
revpdf.com
www.rozgarspot.com
simatomic.com
canteen.sor-phum.site
auth.speechmasters.app
material.src.zone
sureshengineeringworks.com
taktikcoach.com
elar1ssky.tarade.ae
www.telltouch.com.au
www.thegrind.quest
thompsonvaca.com
www.thompsonvaca.com
app.timepass.games
track-d-timer.com
trackabuild.com
trevsbargainemporium.com.au
trioinsights.trade
www.u5soft.jp
www.vdenboer.com
vertientesdemaullin.cl
www.votewghof.org
worldfamousapricotphotographer.com
woori.yoyaku.cc
wind-accounting.zyroneenergy.com
Other domains in certificate