Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=cursoinfortmatico.pro
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 19, 2025
Valid Until
February 18, 2026
87 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8B:E3:A6:95:4C:0A:88:89:55:06:33:F0:F1:5A:52:6C:38:28:2C:0C:55:9D:58:A0:BA:FB:EC:1A:CA:1A:FF:DA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.soundgen.app
admin.dev.groceriya.0xait.com
4cgt.com
www.604drivingschool.com
www.abalan.ro
staging.gaeste-intranet.additive-apps.eu
aggx.dev
globality.almeda.de
arorahonda.com
www.ashley.gg
www.atilparikh.com
bobbin.es
www.borkoudvarhaz.hu
dnd.bossani.de
www.cablingo.com.au
network.at.calculatorhub.app
www.carolinawallace.com
www.devorahnov.co.il
app-2.commo.dev
cursoinfortmatico.pro
vertrag.danielederosa.de
auth.datafordeals.com
www.dealflow.app
app.desk-booking.com
www.dj-matty-gee.com
lab-invaders.donhubi.ch
pharma.dukatrack.com
docentes.edutecnia.cl
eac.eestec.ro
www.fassa.mv
feedingthehouse.com
rwy.flugplatz-bielefeld.de
foodkorp.com
break-ice.fredocloud.com
www.friedgummyworm.com
www.georest.ge
www.gerits.dev
godlabs.com
gonzaloarenasf.cl
grndad.org
www.gromatemedia.com
www.gumrun.com
haiku95studio.in
hashgraphdefialliance.org
portal.hausvalet.ca
hotelvillam.pl
dev.fb.grd.ichain.co.jp
ilnotaio.org
ixii.app
saml-auth.job-us.dev
justinjoy.dev
katans.com
kawabatamotors.com
vieclam.khatoco.com
www.kreadisrupt.com
grocerycalculator.kumaravelumapathy.com
www.laptopclinic.se
votations.lematin.ch
dev.letspointit.app
menu.liebowitz.me
www.logix.hk
link.lowkeychat.com
countdown.marmicode.io
www.molekular.mbitgames.cloud
medialinja.medialukio.fi
paraclimbing.be
www.partyloottracker.com
gotr.patrick-read.com
www.portal.paxi.co.za
apps.pigeonultra.com
www.pipuy.com
podana.net
pradhyumnaag.com
www.probilliard.club
brand.protium.digital
holasegurosbo-dev.proyectosyseguros.com
pda.dev.quantumrfid.com
restaurantebahamas.com.br
link-uat.ritbv.nl
app.saju.one
emulatorjs.sakirdak.tk
www.scratchysniffers.com
true-do.seventysete.com
auth.sharptools.io
shopifyengine.com
snapklik.ca
songthamtung.com
stockgenie.co
painel.tatilfish.com.br
tellmebriefly.app
tellyappios.com
www.theoriginalqueenscliff.com.au
tophatvideo.com
fleet.tucar.dev
op-kassa-router.vilkas.fi
walterbanda.com
www.winquist.ca
apps.ycuuk.com
www.yellowpagestoexcel.com
www.zeptogon.com
Other domains in certificate