77/100 SECURITY SCORE

Certificate Information

Subject
CN=flickster.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
September 17, 2025
Valid Until
December 16, 2025 33 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:5D:B2:65:13:AF:12:02:07:93:7E:5F:A3:F1:C8:DB:CA:20:50:1E:E4:E1:02:C1:EB:DD:33:87:2C:DC:77:3C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.pawelindus.com

Other domains in certificate

3324vc.com
akssaconsulting.com
alamanasolutions.com
www.alrabiegroup.com
anzorbalkar.com
appollo-crypto.com
www.assuredshipping.in
fy.baffu.net
www.bennilson.com
www.botykit.com
brandboostie.com
www.calculatecrs.ca
calendarteams.com
cecilia.digital
www.app.ceruai.com
taliparamb.chcentredonate.com
cheorse.com
auth.chordyv.com
cleaningjob.app
www.clicketplus.com
climbing-factory.com
clipet.io
www.coachtravel.scot
sherlake.com.my
countingstitches.se
otc.curved.money
devetnica.online
www.devtyde.com
www.digisticky.com
digitaltoken.io
auto.doxastic.xyz
perambalur.dropmeoneway.com
dukkani.ly
www.easymenuplanner.app
environment.industries
flickster.app
www.fundseniorcare.org
garillo.online
umz.gopakumarka.site
pay.sandbox.assurantuk.gr4vy.app pay.sandbox.corendon.gr4vy.app
tenantnext.homestation.jp
agenda.iasdsantamonica.com
panel.inclub.world
www.innesthetic.com
jaanemann.com
jgmidigitalteam.agency
www.joatspace.com
jphcoaching.com
kalyanam.dk
www.kelenservices.com
bookings.kusol.co.nz
ucpuebla.lapieza.io
lokeshpunwani29.site
angular.marcuspurnell.pro
www.matchkans.nl
app.mechanicalcontrolsystems.com
flutterkaro.mhmz.dev
www.milanmc.me
mmgold.diamonds
www.movemypetng.com
mugridgeconsulting.com
links.mwm-internal.com
naturalforever.store
nileshpaliwal.com
nirmallabs.in www.nirmallabs.in
dev.nom.legal
oficom.com.ar
www.orbix360.com
p2ppro.in
enfasis.profesionales.pedidos.online
referer.playmister.com
printexposures.com
admin.queromaisbeneficios.com.br
rabbitholecreations.studio
adm.renda7.com app.renda7.com renda7.com
www.rixdorfer.de
seatpsychology.com
sonnewatt.de
akio.speakylink.com
www.svsglobalimmigration.com
talktodnd.xyz
tamottigin.com
demo.templay.tv
www.tinekejelsma.nl
admin.torrefactory.coffee
www.trainingdiary.app
drive.transfix.io
trustnode.app
tweetonium.xyz
www.villatoro.art
www.virtualolympicgames.net
vivaldijewellery.com
md11.live.websheet.io
www.wichtlerei.com
foodsensitivity95-report.yourgutmap.co.uk