Open
Cached
·
just now
89/100
SECURITY SCORE
Certificate Information
Subject
C=US, ST=California, O=Apple Inc., CN=theapplestore.com.pt
Issuer
C=US, O=Apple Inc., CN=Apple Public Server RSA CA 1 - G1
Valid From
March 31, 2026
Valid Until
June 29, 2026
56 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
67:4C:AC:AF:59:D9:DD:9D:54:4B:9F:DE:1D:21:4D:B4:7F:55:A9:9C:36:19:E0:56:60:4B:EB:76:20:34:3D:73
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000; includeSubdomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
60 domains
apple.ru
store.apple.ru
www.apple.ru
www.store.apple.ru
apple-pay.rs
www.apple-pay.rs
apple.ro
www.apple.ro
applecentar.co.rs
www.applecentar.co.rs
applecentar.rs
www.applecentar.rs
applepay.co.rs
www.applepay.co.rs
applepay.rs
www.applepay.rs
apples-msk.ru
www.apples-msk.ru
applesports.ro
www.applesports.ro
applesports.ru
www.applesports.ru
applestore.com.ro
www.applestore.com.ro
applestore.qa
www.applestore.qa
asto.re
www.asto.re
epl.co.rs
www.epl.co.rs
eplsentr.co.rs
www.eplsentr.co.rs
eplsentr.rs
www.eplsentr.rs
icloud.pt
www.icloud.pt
icloud.ro
www.icloud.ro
imac.rs
www.imac.rs
iphone.pt
www.iphone.pt
iphone.rs
www.iphone.rs
ipod.rs
www.ipod.rs
itunes.pt
www.itunes.pt
itunes.rs
www.itunes.rs
itunesradio.pt
www.itunesradio.pt
itunesradio.pw
www.itunesradio.pw
mac.rs
www.mac.rs
theapplestore.com.pt
www.theapplestore.com.pt
theapplestore.pt
www.theapplestore.pt
Other domains in certificate