77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.ntnuicalisthenics.no
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 25, 2025
Valid Until
February 23, 2026 80 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
53:8E:7A:BC:34:CF:19:99:BF:E7:73:52:74:F3:CC:C4:EC:1B:C5:51:21:53:EC:CD:E2:68:0F:5A:B3:18:1C:0C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.shabbat-o-grams.com

Other domains in certificate

www.aamirmadari.com
ad-absurdum.me
www.anisabboud.com
associazionelecase.it
www.avintr.com
berkozcan.me
binahmadworkshop.com
www.bishoyriad.com
www.bokhoquynhnhu.com
qm.entryscreen.bondvet.com
halp2024.borisvitazek.com
www.brightpixelsolutions.com
fourinarow.california-games.com
calzadomagaly.com
www.canyonproject.com
prod.careey.com
checklists.checkinn.co
ordering.chopsushilancaster.com
webhook.clashperk.com
cleu.com.br
commerceq.com
gestao.conectabananeiras.com.br
app.considerbeyond.com
www.coralgablespermits.com
mailmonkey.cpptl.co
tarocoffeebar-orders.crispnow.com
forms.curowebs.com
www.d2cfrt.com
deepmec.com
ngx-board.dev-ltl-xpo.com
www.developers-guild.com
www.dhirunand.com
www.drjayanthgastrosurgeon.com
certificate.dylanacademy.in
economicsbrowser.com
einfach.menu
envibit.com
estimation.work
finopsbudapest.com
flashagency.info
frenshamstructures.com
fuegosphere.com
gameshelf.io
gdonline.com.br
georgesarantinos.com
a.getresponse.com
www.gigclubth.com
glaciers.dev www.glaciers.dev
glo3d.net
reclamos.loteriaderionegro.gob.ar
dfds.golittle.dk
haydenrumble.com
hello-leo.com
sellia-admin.heycenter.com
dev-tkp-dynamic.hibrary.me
hopcrypt.com
www.html-sample.com
incognita.land
www.jignesh.world
join-welcomehome.com
www.josiaho.com
msm-admin.justlorry.com msm-justtrack.justlorry.com
quote.keap.page
khidmat-foundation.com
www.luccalanaro.com
toanhung.m1studio.co
mdeeq.com
www.meetthebollingers.com
bell.merlocode.com
ratings.moviola.io
open.mybrainboostapp.com
www.myfigtech.com
www.nathanrenner.com
www.novel.online
www.ntnuicalisthenics.no
www.osoji.io
phymol.org
physilovtechnologies.com
pmotto.com
beta.quoteninja.com
race.lol
rasbir.com
saturnobeachrecords.uk
org.dev.service.work
challenge.skey.network
loud.sodapop.se
app.solucaoimobiliaria.com
stockrepublic.dk
app.sukanyeah.com
map.tidalforce.org
move.tmos.es
t.dev.upstager.co
viewcovid19.info
www.visodent.ro
cfe-stage.voot.com
alpha.flow.waylar.net
www.east33.yoyoreact.com.au