Open Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.codewithkenan.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 06, 2025
Valid Until
January 04, 2026 48 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
08:C2:E7:2E:8E:49:F3:38:6E:D4:BB:EF:C3:8A:38:17:F9:DB:0C:7E:77:9C:C4:BB:A4:5E:4C:E4:D6:AD:0D:90
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.stoick.fr

Other domains in certificate

2010.bloggies.com
staging-broggl.abtasty.io
boardingpass.airline-choice.com
www.akgunkaya.co.uk
aliceiriselmarhuisfeestje.nl
alphastrike.app
www.apphause.co.uk
archishmandurbha.com
www.arshiaashari.com
awwsmith.com
baselink.ai
www.belousoff.ru
mother-hive.castiron.me
click-serv.com
www.codewithkenan.com
test.colinlawrence.net
anfora.com.gt
maharjann.com.np samirkhanal35.com.np www.rajansaud.com.np www.tuintechnologies.com.np
www.creatutorneo.com
www.criptoz.com
www.crownaddons.com
cycue.com
app.dareme.com
connect.dev.dashride.com
dewaynehiggs.com
updates.dziemborowicz.com
editfy.app
bar.englishclub.uy
rating.expertrec.com
www.f1wm.pl
fixcare.kr
www.foodaciously.com
admin.foodxp.app
web.freshreview.co
api.dev.fuocos.com
geekpit.net
www.gogawi.us
www.improve10x.com
itcg.life
go.jackpotsvr.com
www.jointhemaster.com
www.jusbytes.com
deeplink-dev.justsimple.finance
numnum.kiosk.kerzz.cloud
krypton.life
admin.latestphones.in
app.lemune.com
livingcharts.com
locket.camera
www.app.loqatio.com
www.lordsguilda.com
www.lunsara.com
luukjonko.nl
makeadrop.com
masopego.es
misionvidamx.com
www.monkeybarrels.com
mountelizabeth-hospital.app
musaic.app
www.nibkit.com
nomadventur.es
deepdive.oceansai.tech
www.olds.co
oneshop.work
oneupconsulting.solutions
edit.piratemidi.com
www.pozoltech.com
www.pripapermachines.com
prtgps.com
stayc.re2fe.com
reactgeeks.com
service.remodzy.com
treaty.prod.resre.bm
saidthat.social
santoespiritu.com
dev.securetix.com
www.selexin.com.au
shermanosdev.com
dumo.siouxneil.com
slidesandthemes.com
strongline-staging.smplabs.com
sorayaintercinefilms.com
souissi.eu
str-it.de
sunna.sn
www.tbr.ai
tekey.jp
preprod-portfolio.tenguriya.com
www.twuathleticscamps.com
app.viralata.do
app.jornada.waylogtech.com.br
www.winetrails.app
workade.it
www.workfeed.ai
landing-staging.xpersity.co
mdtest2020.zinglio.com