77/100 SECURITY SCORE

Certificate Information

Subject
CN=app.mingaku.net
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 19, 2025
Valid Until
January 17, 2026 48 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:20:16:C7:75:04:15:E8:7B:2A:94:87:78:81:0D:4A:AB:7D:87:68:5A:D8:E1:EB:DC:C7:2A:6D:77:A0:AD:EE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.rochaequipamentos.ind.br

Other domains in certificate

116.jp
miimbi.angelis.ai
apply.applypan.com
aptitudeclinical.com
apps-dev.aquadesk.com
ark4n631.com
artmobileapps.com.br
corp.asapme.club
payment-link-tst.astropay.com
l.beatoapp.com
img.bossbanmotor.com
staging.ordermars.botio.io
www.chhabramedicalcare.com
chincraft.shop
cl-desarrollosweb.com
cleanforce.tech
clearpricetours.com
snad.co.kr
operations.cognite.com
coinra.com.mx
offers.kiismet.com.sg
portal.debtpanel.co.uk
sponsor.diversityinbusinessawards.ie
staging.dashboard.dodd.ly
www.dpkstr.com
buy.ebtcoin.xyz
www.eidjord.no
elastycloud.se
ez-engineering.it
app.finovers.org
fouzitejini.tech
futuredu.fi
roi.gnowbe.ai
www.gym-grid.com
halois.id
he.mk
hirevis.com
transfers-dev.hotwax.io
hubjur.com.br
dat2416448.id.vn
link-po-tat-sc.jec-digital.com
chooseyourownformadventure.jenniferwadella.com
www.kalpa.no
www.app.kite.ooo
kodestudio.uk
kryptonomy.com
www.kunzacademy.com
lagasystems.com.ar
life-leap.jp
dashboard.likestoryeg.com
kdo.lilianhedevin.fr
links-aisearch.com
www.lucaantink.nl
luisacharles.com
kaava.mafynetti.fi
yam.marchandm.fr
marunouchi-streetpark.com
www.matikkastara.fi
staging.mboyz.de
www.mcslocacaomaquinas.com.br
iwantitall.merci-michel.com
meubusao.com.br
app.mingaku.net
waryu.myayzin.org
nec-planner.org
ng.nuforce360.com
mina.nzgray.com
www.oraxai.com
osoji.io
patinamotorz.com
beach.patrol.co.nz
www.perfpack.com.br
poliambulatoriossb.it
www.protector-of-balance.games
radwanski.net
images.rotz.ai
fbhostingtest.rue-lab.net
saalikmedia.ee
talk.saudevianet.com.br
www.schrall-eier.at
shuvashish.com
app.smoozi-crm.ru
account.sofan.app
solusysfiscal.com.br
sqi-ea.africa
statropy.com
www.stgjellyfish.com
mail2.team-captain.com
techovelpo.com
www.tentech.tech
app.trackin.com.ar
u4studio.com
wl.ueue.com.au
unemgmt.com
vectech.solutions
tainstaller.vindico.cloud
extravelmoney.visa2fly.com
app-pre.vithas.es
www.writetheclassics.com