Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.rsquared.ai
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 27, 2025
Valid Until
January 25, 2026
66 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6F:5E:24:FD:74:2B:D2:92:28:9D:CB:E4:81:AF:9C:8F:D3:66:A2:29:CD:D6:C0:B6:66:B4:81:41:A9:12:81:33
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.stay-healthy-sustainably.de
abirabdullah.me
agentguido.in
ketketpolicy.andando.sn
anyareads.xyz
www.autoselmolino.com
aviditi.com
event.aytto.org
babzlies.de
beyondseek.com
www.bitsyouneed.io
brightminiapps.com
telefam.cak0.com
capitals.lat
www.cardecor.in
cargifts.by
www.casamentook.com.br
manage.classet.in
link.cleverabb.com
vitoo.co.il
learn.hax.co.in
coachmilo.app
codehard.tech
voismoi.com.tr
glomb.cubiq.com.br
upload.dataconsulting.group
easypool.in
ebusaka.com
www.elijahresume.com
pos.erklabs.com
fieldlogic.co.nz
admin-jobs4neets.formprof.ro
forsend.com.br
gdarchitects.ph
genixlabs.lk
www.hyperwealth.ai
ignou24x7.com
islamicgyaan.com
ittybittykinetics.com
j0vsec.com
jovelyncomaingking.net
jreyasmim.com.br
membre.ki-aikido.fr
kllsoft.com
www.knecht-reisen.ch
www.laacademiaespanol.com
www.learndatastructures.org
zweig.lernzettel.org
liduan.net
truega.lifree1.com
lindermanlandscaping.com
www.liveryhub.com
app.dev.marketizador.com.br
beta.mcflyindustries.com
www.metaphor.education
midasoft.uk
www.mobibootcamp.com
www.mosai.eu
novila.my.id
www.natebranscum.space
newpaltzcamps.com
night-light.space
edupane.olagunju.ng
tositos.owct.me
parquenaturalsomiedo.com
pdfprime.com
philomatharts.com
lin.phyo.work
new-project-instructions.pirochta.com
www.lp.plantora.com.br
propmate.online
actura.qflit.com
redcupcrew.online
reg3mng.removis.jp
www.rootsandglow.com
www.rsquared.ai
holidayspa.salonxpress.me
www.saycheesebistrot.it
dev.onboarding.schoolsmobile.com
mypilot.simplygenie.site
skinidesigner.ch
chat-rosario.smartmation.com
smivanov.com
showcases.squidypal.com
www.stattracker.com
stayillusion.ch
www.techful-programming.com
www.themowa.com
www.theodoraandrobert.com.au
thesinsofthefathers.com
tizra.ma
trackdaysmexico.com
uevolve.io
uplena.com
vanclub.studio
www.vanclub.studio
verwoodramblers.org.uk
www.vincentjq.com
auth.dev.virtual-songbook.com
vraieeglisededieu.fr
Other domains in certificate