Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.administrationmp.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 07, 2025
Valid Until
March 07, 2026
72 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D4:8D:18:03:FD:CA:5E:67:40:20:9D:59:94:78:69:AF:2E:55:CB:50:4A:9F:5C:9F:20:3C:D5:76:05:61:16:DA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
puertaabierta.com
www.puertaabierta.com
admin.3dabb.com
www.administrationmp.com
resizer.apphive.io
doctor.appointohealth.com
www.arpinum.fr
staging.ayanza.com
minidaw.aykev.dev
www.battlequestions.com
www.bodeg.com.co
boujeebubblesmobilegrooming.com
pruebas.bracelit.es
sandbox.brightfinder.co
app-10.dev.carto.com
catchlocker.com
jacem.chaieb.dev
www.chargelity.pl
trishaktitraining.com.np
consentcompanion.com
coolwax.com
szavaz.cserkesz.ca
cyberbabies.io
www.david-sousa.pt
test.depaire.net
app.dialexity.com
donttap.com
eggsklusiv.de
enlinquental.com
ericlantz.com
fabnimitta.com
felix-vue.felix9611.com
ohmbase.fiveohm.com
staging.webapp.fixteamdrenthe.nl
admin.foriu.mx
mentor.formr.fr
fujimaki.ltd
www.gauravtayade.xyz
lp.getinfluencer.me
www.gia.re
glasaj2023.org
admin.gotticket.pa
fb.griffinhill.com
www.gupipo.co.jp
gurukula.one
halasrasselban.de
staging.hollandtaxigroup.nl
iamandrewscott.com
hyperthermia.idv.tw
imherechat.com
www.jeffellen.com
jonathanlouisng.com
kelimekartlari.com
www.kenshocyber.com
events-mgt.kiswe.com
www.korobeinikihansblog.app
www.kunstpris.dk
panel.llaoz.com.mx
lobbyra.com
logicaldesigners.com
mt.logivan.com
medxperts.mx
dev-test-webapp.mesensei.com
love-poule.minhnn.fr
learn.mobilemind.io
mgp.moderngolf.ca
www.moonindiancuisine.net
www.mpalodiaiscouverture.fr
muon.mn
components.nicolaschiong.com
billing.nomada.cloud
www.nomea.se
store.paycloudafrica.com
www.peppertech.asia
admin.platformkids.com
pointa.org
spri-noir.preproduction.website
app.prkcar.com
properlivingproperty.com
sa-my.dev
www.schenectadydistilling.com
sherwoodforestatl.org
www.shieldsmp.com
dev.signatrue.app
dev.simondmc.com
dev3.sompo-de-noru.jp
dev-sv-analytics.sportsvisio-app.com
admin.stairling.com
stelath.site
www.stmncvotes.com
app.tandstad.nl
www.tempoehistoriajavae.com
www.unitags.app
dev-app.urable.com
vixar.co
www.vueible.com
portfolio.wernerviljoen.com
www.wordoff.app
www.xidsoft.com
orientalist.xva.asia
Other domains in certificate