77/100 SECURITY SCORE

Certificate Information

Subject
CN=www.blog.spellblaze.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 24, 2025
Valid Until
March 24, 2026 73 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:3A:22:DE:12:D2:76:C8:C5:CD:F6:0B:90:3F:91:DE:B2:A3:4E:D3:17:8E:43:E7:B0:87:27:8D:48:E6:0A:FF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.sumansolarenergies.info

Other domains in certificate

ar.a360.tech
www.aconsciousengineer.com
akshaydeshpande.us
www.aleksandravujadinovic.com
anishaverma.com
antkennedy.com
play.apolloconnect.com
app.aqualandvasto.com
eventwisher.arthiaw.com
app.audiocardio.com
banajohn.com
qrcode-uat.benjiinvestments.com
link.beptt.cc
admin.bigblue.co
support.bizopsapp.com
www.bradleyfolkers.com
cb-corporate-finance.com
chiara-avagliano.com
app.clickacasa.com
mms.cliotoronto.com
www.cmccentre.com
roxen.shoesonline.co.il
customer.soilmate.co.th
www.design-swell.com
www.divinehospitality.co
ux.docresponse.com
q1-myproductbook.dpdlocal.co.uk
www.dtiserv2.com
engagingit.com
demo-avanproy.enriquechacon.com
export.execute.software
noodplan.facet-accountants.nl
go.filmm.co
firelop.com
fle3t.com
flowscious.com
hoststaging.fwd10.com
ggx01006-007.gadabout.games
nttd.galvia.ai
www.gauravbuche.com
www.getmakie.com
glampcrafters.com
gpmrating.com
greencalc.org
hablaylenguajeapp.com
harrysvideogames.com
hawkingchatbot.com
hegemier.net
hicanyu.com
admin.hongkongspeedie.com
industrie-haus-service.de
infitap.com
student-dashboard-stage-2.ischoolconnect.com
kristensgothart.com
www.lazyworkroom.com
lexgraph.de
pool.long.wtf
mattaniah.online
qa-en.memberhub.de
missioned.co
www.nani.technology
link-jbl.nibo.com.br
nomadshifts.net
ondrea.io
www.onlypawns.com
onrecord.online
linking.ooca.co
www.opareta.com
auth-firebase.videoteca.spr.org.br
picspots.com
proxiservices.be
quattro.today
www.rapinnohealthcare.com
redezio.com
reeskiebusiness.com
sahkarishilpiiti.in
volker.schiewe.dev
mobile.sfsfund.com
referral.sheru.se
sifforum.com
sighash.net
dev-log.projets.mathieu.smarzyk.com
speedstar.live
www.blog.spellblaze.com
docs.spfweb.com.br
srirastusubhamastuevents.in
dashboard.stamp2go.app
www.sterkekerken.nl
submissionleague.co.uk
develop.teamtribe.de
go.templateapp.co
link.testingdeeplink.com
thedonum.com
www.topfloridabrokers.com
utenergy.ca
app.whatthefake.club
wonderpost.nl
chat.xortd.com
zerofy.ai