Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.katsulabo.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 24, 2025
Valid Until
February 22, 2026
77 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7F:0A:EA:A1:F6:DA:78:5A:AF:7B:52:B3:C5:D9:05:DF:EC:C1:2A:5F:A3:6A:75:46:EC:17:6F:A8:E6:F4:A8:16
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.sipfeed.com
www.apxleads.com
us.test.monday-trees.avisi-apps.com
awarenessindev.com
biblioteca-privados.axon.es
www.busboom.lt
www.caesurababy.com
www.chechen-numbers.com
www.compaxplant.com
dev.covidvobcich.cz
danieltoos.com
dev.rosa.dataauchan.fr
demo.detalks.co
store.digipurk.ee
cmi.digit.srl
www.efidatos.com
notification-center-self-service-staging.gassets.emarsys.com
ga.kulxtreme.eu.org
www.featurecomplete.com
www.fedmich.com
www.feteducinema.com
chat.fieldmind.ai
a0e6.foodle.su
www.frostybasket.com
adminportal.furtrieve.com
auth.gamsatlab.com
scrollb.gemeinschaft-muenchen.de
admin.geminitradesolutions.com
www.getluckyfind.com
www.globalsped.de
gsf.direct
pics.hellonimbly.com
svatba.helu.cz
app.horseracesnow.com
hotilio.com
www.ieyalsolutions.com
platform.immotokens.be
www.innovelo.com
j-loewe.de
www.katsulabo.com
keymarket.ma
www.kheyra.com
www.kwjames.com
qrkey.lextant.com
www.lovepawshomestay.com
aiov.lsceco.cloud
mapatalks.in
www.marmomacplus.com
testing.marvelmatch.com
retro.massivenerds.com
medicapi.com
www.miguelblanca.com
minicubex.com
mohanedarif.com
bll-apply-dev.money-phone.com
therace.montblancexplorer.com
myspecialexperience.com
noohkvm.in
redirect.norma.co
candy.ogogo.com
pilot-admin.omnicurenow.com
one8right.com
www.onepuppyaday.com
app.openq.co
wokyou.pedidomovil.es
photalitarian.com
poriyaalar.in
jovem.portalacine.com.br
www.quote-ninja.com
stg.hachimaki.re2fe.com
relaxsounds.app
rkw.ski
showroom.rocahardware.ca
mint.rocketeer.fans
www.royalmobileapps.com
www.saurja.com
app.sensei-go.com
www.severaltech.com.ar
www.smartbot.black
snapdecision.app
www.software4you.tech
www.delivery.softwarebistro.com.br
sunyataglobal.in
moj.superduper.si
field-main.tapraise.dev
starlynx.team-tristar.com
www.costa-consultoria.tec.br
link.tecysa.com
link.tempmeebe.com
www.trybe.do
tucasaconstrucciones.com
admin.velloretaxis.com
vilao.pt
vitmedricky.cz
www.vudduu.com
worldmoney.io
xhibit.in
carrierapp.yolda.com
www.ysd.co.jp
zec-archive.com
Other domains in certificate