77/100 SECURITY SCORE

Certificate Information

Subject
CN=terrific.live
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 14, 2025
Valid Until
February 13, 2026 79 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:82:77:82:AF:B5:95:E9:1E:2A:75:14:1B:38:3F:E2:8D:34:C4:4A:36:72:89:28:E1:9B:BB:8B:34:17:A8:E9
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.playhearts-online.com

Other domains in certificate

ametrics.mx
andredtran.me
www.appstackx.co.uk
aradone.me
artaviaconstructora.com
www.artdillo.com
benefitsiq.io
www.blueteamrestorationapp.com
testmautoaccount.bmarken.com
bonding.app
gptmadethis.brucebertrand.com
cadburytrytime.co.nz
testadmin.cagehunter.com
cartobuk.it
cheqlist.app
www.circle-sd.com
www.clubajedrezash.cl
www.coastalboilers.net
jsinternational.com.gt panel.silvergames.com.gt
withdraw.dhedge.org
www.digicradle.com
www.dipanjanpanja.in
app.dj-play.it
q2-pickup.dpd.co.uk
dramorak.dev
dylankral.dev
e-soldier.essoapps.com
eventwerkstadt.at
kagima-auth.fecheninc.com
www.fluxon.com
forgetgames.com
fusionmedias.in
v24.gctc.in
video.getpassionapp.com
globalkardec.com.br
gskdata.com
hexadan.com
adminformacion.hub7s.com
hyx-strategicpr.com
app.instaroute.com
www.jardimblauth.com.br
careoutreach.jethro.link
jkcool.fi
jooselohi.fi
jumpseat2605.com
justasktourscol.com
dev.keeptrackit.nl
kendricklee.com
laudijksterhuis.com
launchpool.vip
lockle.org
docs.ocrudoku.louisgallet.fr
lucaslab.dev
m-bk.com
www.marvinoeben.com
mediacontacta.at
www.mgchems.com
moonbridge.network
lu.mottini.org
movisolar.com.br
msoler.dev
mybestcolors.app
www.mygrocify.com
www.neetechs.com
newstickerapp.com
www.npappdesign.com
oladalniel.shop
www.oneupking.com
optidawa.com
www.p3a.app
paraworker.com
pcai.app
www.phqakl.co.nz
poppic.app
pretty-byte.com
app.qbhcourierservice.com
radiocidadeweb.com.br
www.rafflerush.us
triskeltours.randori.be
realitymind.org
boda-maintenance.rean.in
www.rolandthomenius.com
www.santaisabella.com.ar
agenda.sastrala.id
www.sharangpai.me
shez.app
snap-stock.media
columbia.solomonschariot.com
soupynoodles.dev
supremetreeutah.com
synxite.app
terrific.live
thetugboatmansdaughter.co.uk
engage.urbanaparks.voyagernetz.us
vulcanstudio.in
wagetrak.com
x-mej.com
zajfitfight.pl