77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.locumotion.co.za
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 28, 2025
Valid Until
January 27, 2026 78 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:42:B8:D0:56:32:6F:A9:2A:17:39:9B:2F:14:16:AF:0C:12:F8:D2:AE:12:60:A2:B7:D5:61:07:E7:57:79:1D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.spintoearn.work.gd

Other domains in certificate

events.abto.app
accentrenovationshsv.com
acglglobal.com
www.amyryan.dev
link.appfontmaker.com
hospitality.archermalmo.com
bhave.nl
camerondaycustomwebsites.net
app.cartasquentes.pt
app.claimback.org
www.reshef-kitchens.co.il
brotherhood.bikers.co.ke
download.codewiki.app
draw.cyberhaven.dev
cyberhms.com
www.dialinespresso.app
app.dinnerfamilias.com
blaster.doonies.xyz
drop.supply
www.colegiointeramericano.edu.sv
appai.elscx.com
admin-demo.ethiochereta.com
www.excellentchinesedrimnagh.ie
farmaciasettimomiglio.it
farmy.life
floorwise.pro
catering.freshstop.fi
lieferdienst.gastronaut.ai
goseet.com
gosnowstorm.com
www.habitfivepercent.com
www.harshavaliveti.com
www.heeraclinics.com
veas.hkoil.org
www.hoatuoithuynga.com
app.hummingbirdtech.com
billing.irecman.com
nmn-lp.it-beaute.jp
its-jo.sh
jakefeldman.dev
jonasl.dev
kintab.se
www.korean.tools
examencomplexivo.liidutpl.ec
www.locumotion.co.za
longanespa.com
phasesofthemoonpro.m2catalyst.com
admin.matiasrivero.com.ar
dev.secretsanta.mattpeskett.com
app.midiamarketingtecno.com.br
go.mvpmailhouse.com
bolusiliwangisidoarjo.my.id
www.myblockchaincorner.com
mychannel.live
mykytadeyneha.com
mymusicmetadata.com
www.napelembalaton.hu
nayansir.com
www.ningenet.com
www.novasoft.tech
www.nullflip.com
app.passpass.io
pg-consulting.jp
prizenite.poptacular.com
auth.qoodish.com
logisticsmgmt.rcloud.dev
redsea-vn.com
rileyandlaura.com
founderconnect.sanidhya.in
secondshift.io
employee.spadeservices.com
splendo.health
wmuhockeyscratchgame.sqwadhq.com
docs.stechsolucoes.com
www.steepdeals.com
dev-admin.stereotheque.com
stockholmapnea.se
thegrant.app
alumni.theharvardadvocate.com
seaprojects.theseabay.com
thesourcesays.com
app.toglon.com
www.tpmusicgroup.com
plus.traitstack.com
www.tripleadesign.in
trustacks.com
trustmakine.com
app-dev.ttchof.de
www.ummertaahir.com
next.undock.com
www.upliftgroups.com
verbalhero.com
drivers.viggo.com
www.wearltc.com
webvideoplayer.org
admin-alandskortet.wntr.app
yasodha.in
www.yazanzaid.com
www.zenokoller.ch