77/100 SECURITY SCORE

Certificate Information

Subject
CN=sis-bau.info
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 01, 2025
Valid Until
December 30, 2025 49 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C2:06:69:DE:8C:82:D0:30:D8:1C:78:51:E1:DE:D2:9C:AC:BC:33:27:C4:9A:FE:AA:8E:F3:3F:D1:AA:69:0B:40
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.pickoneatrandom.com

Other domains in certificate

geiger-modular-test.3dcloud.io
json-translator.404-labor.de
auth.acehub.io
adamliu.page
www.alexispoveda.com
alpenfruechte.de
develop.link.amber.lgbt
joke-teller.anusha.dev
download.aplicativopalavradodia.com
rentmates.appstruct.in
workshops.ar-chaos.com
aadmin.aspirantsprep.com
content.asq.ro
www.autx.net
kurancili.bel.tr
bigda.me
birkman-beratung.de
bluejay.dance
turbotiles.bmgomg.com
www.canadiv.com
webview.dev.canb.eu
www.chromatic.world
simrikasubedi.com.np
manage.edti.com.tw
cuetesa.org
www.davidfriedl.com
thexi.teaser-demo.dbox.com
auth-dev.deedz.net
digi-soln.com
download.dindinn.com
app.dopawords.com
echofile.app
eh-widget-dev.ellipsishealth.net
exaltrates.trade
emoji.far.st
www.fcortesnila.com
featherco.de
json.feifeier.com
www.fellinisiemreap.com
franshenwinetours.co.za
welcome.gener8.tech
tools.goudsteen.nl
origins.helpper.com.br
hnuenterprise.com
development.app.hoofbid.com
jangid.co.uk
scottrv14.jaredsolomon.net
kalakar.ai
khitma.net
lauragarciahernandez.me
www.lecoursville.com
www.mariafernandatembra.com.br
ppe.moteev.store
station-app.mylock.es
thefibsbycharlesai.ninfa.io
injan-kasukabe.nissinwarehouse.com
www.ortiz-construction.com
get.ourflat-app.com
admin.parakhhospitals.com
plarogame.com
deeplink.pod.ai
poiseskn.com
investeren-vastgoed-immo-bulgarije.propenda.be
admin.reddlegendfilms.com
refwell.net
app.runxact.com
punchbeta.sahlhub.com
samaitests.scontinent.com
securetix.net
dgm2120.shandelleleigh.com
dev.sharemap.live
matrimony.sheikhsoft.com
www.sis-bau.de
sis-bau.info
www.sis-sanierung.info
sophoselectronics.net
nysphaatriviaadmin.sqwadhq.com
vendedores.srconstruccion.com
bodaortiznavas.swanmoments.net
www.synworks.jp
www.tabrezdal.com
tandzorgmeilegem.be
lista.templat.dev
notificaciones.teseo.es
dev.thepacificline.com
thetinkertaylor.com
tools.tnshipping.us
www.tobarrajorge.com
www.unrealcoach.com
dev-cms.urcupcafe.com
staging-cms.urcupcafe.net
www.vibeflowers.com
vignesh.tech
kjapt-valg.vitterso.net
watermarkdb.com
workhonesty.com
zelgit.com
app.zero1-mtl.com
guge.zhy1212.top