Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=olinks.co.jp
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 18, 2025
Valid Until
February 16, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
17:28:C0:E2:21:71:D0:6D:F2:77:3B:56:50:10:E4:13:D2:36:A1:43:66:FC:41:55:4A:81:74:53:D9:01:FF:58
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.subapp.co
www.03foods.com
www.app.100words.org.au
2024.inventorsday.pl
www.actoncraft.fun
plaid.ai.kr
www.andrewblack.games
www.blackstrikes.org
bored.bingo
can-can.biz
capsouls.capdates.com
admarket.co.in
careermaps.co.in
portal.admarket.co.in
thirumurugan.co.in
www.fabless.co.in
koreaspeed.co.kr
www.onshare.co.kr
cv.co.mz
istanbulbambupergole.com.tr
ozsoythebest.com.tr
qa.docs.abot.xbot.com.vn
app.compitienda.com
www.confeitariapraline.com.br
www.creaprovisual.com
crimscord.com
cubitics.com
www.cwcreative.online
diegonoticias.com
dogescan.cc
www.registration.egraft.org
www.dev.evbuzz.app
fatayatnukabprobolinggo.com
www.finanzaktion.ch
flashtransfer.pro
www.florizing.com
gccdynamics.in
geependigital.com
app-stag.esl.geopointer.com.br
matlab.gmit.mn
gomix-app.com
www.gwgreenltd.co.uk
harboe.pro
www.harboe.pro
hope9537.com
beta.ipercash.fr
jameswelsh.de
jrtrab.com.br
app1.kibun.io
kirioslixoudis.gr
www.kloodin.me
lehoanggiabao.com
churrascariapostoparaiso.lupi.delivery
www.mahdimirzadeh.me
staging.mettle.studio
app.service.mmgltd.com
staging.admin.msa.hk
www.msweb.io
www.munayans.in
twexpo.mixhub.my.id
mwpdev.myworkportal.ie
nardilabs.com
swcdevice.ngsc.au
olinks.co.jp
app.onekly.io
gcnischool.or.id
b.othercooked.com
panvil.in
order-at-table.insel-mainau.paymytable.com
dev-myfam.pixelteam.io
www.planitech.com.au
pomodot.com
portalsllc.com
quickcashfs.co.za
www.redas24.com
rightaway.co.jp
www.riistapolku.fi
sahkooy.fi
www.sahkooy.fi
www.servicesbeforehouses.org
servicewaydigital.com
www.showlett.id.au
www.simprosalesengineer.com
app-iguatemi.sistemasimo.com.br
speke.im
starthq.de
stratifylabs.dev
takashi-nakayama.com
portal.takeoffdroneproductions.com
e7jezly.testing.ly
www.thermoartdesign.ro
unanavidaddecine.com
www.unanavidaddecine.com
www.usualcash.com
www.vppcompany.com
waituntiltherightmoment.com
www.watkaoluck.com
roarfest.wycombelions.com
manager.you90min.com
api.zionsphere.com
Other domains in certificate