77/100 SECURITY SCORE

Certificate Information

Subject
CN=quecompra.cl
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 13, 2025
Valid Until
March 13, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3E:F4:BA:5F:9E:1E:E0:23:61:05:8D:35:2D:34:FE:C8:33:D5:91:F0:54:E5:DA:46:B4:85:9C:33:61:E2:EC:04
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.slateverse.com

Other domains in certificate

backoffice.69games.cz
www.afrimax.net
notes.alexstathis.dev
foodsensitivitymap-report.allergymapdx.com
audiovisualeducativo.com.br
balajiprototools.info
www.balticpharmaceuticals.com
batteryvitals.boats
www.byzantinos.org
camqr.xyz
dev.app.checklist.no
www.chromoads.com
www.claroimages.com
meluhatech.classet.in
danielleteixeira.com.br
doesthisgamehavetrains.com
www.e-scc.click
edge-break.com
sponsor.eia.ie
washingtonpost.enotice.io
gallery.evystage.dev
jldbco.exagonplus.com
rapid.fluics.com
geardle.co
www.gingerprime.com
www.glennvon.com
auth.glimpses.app
ateliers.groupepoisson.com
www.healthguard.app
members.hedo-club.be
dashboard.innfactory.de
isasim.com.br
app.kinderkueche.com
www.koraltech.in
ibeautycrm-plastic.lexcellence-grp.com
www.luni.io
web.mnhlaw.co.za
frfirebasec2.moboreader.com
juragan.moneyz.id
mukda-sawan.com
www.mxlockers.com
note.aquaswim.my.id
www.nawarchitects.com
style.nikitenok.by
oir.ro
partenaires.oneflash.fr
oton-1.com
me.pairyapp.com
pallavilogisticsandpackers.com
www.pensioenbijacsitouroperating.nl
www.piumatecnologia.com.br
www.placedrisk.com.au
portal.poiseskn.com
app.prixcon.com
city-express-dev.project-lithium.com
www.pwapilipinas.org
pythononline.dev
quecompra.cl
www.quedix.com
www.remotoco.com
quiz.rhinomic.com
www.rosburglawn.com
roverseinc.com
www.auth.run.place
samrongroup.com
www.schams.com
admin.sesc.soccer
www.sigalgoldsobel.com
sinnetcapitalmanagement.com
auth.sleepandcounseling.com
account.snappyxo.io
soojin-kang.com
app.spatialthink.com
assetstore.spicaengine.com
studioskyfox.com
games.suhaib.in
www.suksabai-homeservices.com
www.sunestrategies.com
soundblocks.surwww.com
teamstack.thanachon.me
menu.thebloq.co
thesmartlogbook.com
tripbullet.com
www.tunescope.org
tusharkhattar.com
ukruhace.cz
nyckelkvittering.urw.com
www.valopas.fi
class.venkataswamy.in
vguigo.com
vicrosenman.com
way2vision.com
williswcy.com
auth.dev.woox.io
dev.xfol.io
coliseumbank.xptoconsig.com.br
www.yooleejoyce.com
docs.zendera.no
ziipofficial.com