Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=bettingofferpro.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 04, 2025
Valid Until
January 03, 2026
50 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C1:90:9C:FD:86:51:35:EC:21:E6:C9:60:BA:92:34:BE:8C:48:24:C3:E8:20:BD:5D:6A:01:1D:82:AD:90:4B:F0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.trc-ev.com
beta.achei.online
akpa.ch
www.alexanderhenderson.co.uk
algorithmcreative.media
amooto.de
areanatividad.com.ar
artoktok.com
www.ascendant.gg
bettingofferpro.com
bisericaimpact.ro
bitl.to
btarget.com.br
docs.bytebrew.io
micro.bytebrew.io
cardguru.io
cems.link
charlottelamm.com
goods.collabocafe.tokyo
www.soporte.contentoh.com
derrotalacrisis.criptan.es
crybabyillustrations.co.uk
www.ctconnected.net
auth.eq1.cyberhaven.io
www.danchepkwony.com
davidwilliston.com
defiance.group
www.delriverocopperpipeclassaction.com
eqptlic-5.dev-ltl-xpo.com
dxplore.eu
dystree.com
app.ecredito.io
sadry.elmateri.com
backoffice.hmg.enviabybus.com.br
app.eoinventory.com
www.v2.fabiankachlock.dev
www.falsify.me
fkconstructions.in
fulldeals.in
www.getcs.link
www.dev.beheer.hallovriend.nl
hoolapp.ing
link.hubsafe.fr
visitorkland.hvaskjerkalender.no
beta.franchisor.ikriyo.com
agents-ai-panel.inovation.com.br
beta.irisnco.id
tender-admin.itmedia.io
shop.jengashop.africa
jetpack-games.com
jugueterabiosolibros.com.ar
julianspinelli.me
admin.dev.jumaentregas.com.br
listy.no
www.mazdademagog.com
admin.medicalpoint.in
activity.mesbro.in
myfinbrain.com
www.myfinbrain.com
admin.mylekha.net
nex-llc.jp
nukappe.nl
www.nyas.in
links.onlinenotary.net
www.orkanx.com
ourshop.my
ovaanimations.in
www.perfectgifting.com.au
portal.qlarityapp.com
stg.zephyr.quickcommerce.org
www.rememberingroger.net
rondeibert.org
www.samith.me
dana.sezsec.org
rsvp.sezsec.org
app.simiinfotech.com
ccsmtl.spaq.com
spinnergames.fun
stattracker.com
acf.suitefeedback.com
sumatoconnect.com
swacanada.org
notes.swajan.io
aweb.takainvest.com
tanaka.world
the-board.io
monet.tsuharesu.com
www.uploadistribution.com
ogca.upolicy.ca
www.utratechsolution.com
app.viptrials.com
voronoi.ee
www.auth.wavecxm.com
links.whiteleylab.com
wingspangoals.com
www.wolo.codes
wordlewith.me
www.wyscapital.com
www.xstrain.com
www.zzzremos.com
Other domains in certificate