77/100 SECURITY SCORE

Certificate Information

Subject
CN=help.amiti.cloud
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 14, 2025
Valid Until
January 12, 2026 52 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F1:C0:34:14:3A:25:93:0D:FF:9E:F0:8F:63:08:28:D9:47:9F:B4:60:D1:00:DA:38:F5:F6:81:82:D6:AA:D6:55
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.ticketlink.com.br

Other domains in certificate

www.00auth.dev
neonplay.12traits.com
adev-mp.fr
adobe-url-builder.com
www.adventureacademyweb.com
help.amiti.cloud
appgrate.net
www.astral-infotech.com
console.auraair.ai
autosprinkfab.com
atjam.axel-order.com
jiledouluo.baileqi.online
baiyue.5164.at
app.biblex.io
www.bickies.nl
www.burritoria-berlin.com
blog.bynem.com
cajubrasilfoods.com.br
wallet2.cbmt.io
dev-www.cbreenergy.com
cedgastro.com.br
chaosmach.com
socialauth.waltonplaza.com.bd
www.cozmicroboticz.com
www.cyberbodeguita.com
api.budsworth.dakine420.com
food.depaire.net
desiredthaidhs.com
dondeestaluna.online
pfcg.drtis.com.br
econhomes.com.au
entreego.com
accounts.esarwa.com
fpm-fbh.exportoutlookmacmail.com
www.flaptalk.jp
landing.flynth.nl
dev.fortheguests.com
foyofo.com
freetargeting.com
fttrck.com
dev.galapp.co
app.garciaericn.com
polytope.gchouse.org
urbane.guestcode.uk
dashboard.hala-education.com
www.hayl.au
auth.heere.chat
homedepot.instalily.ai
jackeinhorn.com
joensuuairport.fi
kayit.gunesokullari.k12.tr
fella-dev.kodaar.com
www.konejale.fi
www.sfs.linkpc.net
magnusnilsen.com
monyapp.co
join.myvmeeting.com
nuevanormadelahumanidad.com
www.odyofilhane.com
educere.org.br
old.med4all.org.gh
www.ozstyle.co.uk
survey.patientflow.com.au
www.pedromalo.dev
amp.pennacchi.com.br
staging.pollive.com
prekvaptericany.cz
staging.roosevelt.ptg-in-a-box.com
www.ra-vilmar.de
staging.recog.biz
revenuescann.com
ritipinakin.com
app.rolyhome.com
celestica.salientmotion.com
buddyjet.savdevnet.com
commande.saveursdasie.sn
coins.schof.co
shw.pw
auth.smodin.io
demo3.strongline.smplabs.com
cologix.suitefeedback.com
superiorcall.io
www.sweetsilver.tech
www.thekingsmuseum.info
thelingogenie.com
admin.thiscreetapp.com
timelytours.com
dev.ondernemers.toegangsbon.nl
estabelecimentos.togoweb.com.br
tooly.fans
www.trulyo.com.br
sumup.tuteeapp.com
valkyriegamestudios.com
dash.visionaryux.digital
open.wisermedia.com
beatprophet.wuiquique.com
www.1982.co.kr
yourpokerclub.com
www.zunostudio.com