Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.console.erasmus-timesheets.eu
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 02, 2026
Valid Until
April 02, 2026
86 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
94:57:67:A0:75:9B:62:ED:97:32:BC:E5:AA:43:36:4B:2A:1D:F2:24:A8:96:11:4E:53:AD:6D:5D:AA:54:58:A6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.vtssa.com
quota.arts.tu.ac.th
agro-digital-broker.ro
aiethos.co.uk
www.andreic.ro
www.aseelautoparts.com
schweiz.avdis.ch
cdn.geo-quiz.barberos.fr
gercekler.batuhan.net
www.beardedbison.ovh
betovert.me
staging-website.billnote.in
bridgeplatform.in
brooksidequant.com
capybarasat.top
fantasy.cebl.ca
app.cloudframework.app
teslaelectronics.co.in
www.hopbon.co.th
visiongroupadverts.co.ug
coiffurevimont.ca
cpsapp.cps.com.ro
marketplace.constructivedesignsinc.org
www.cumaryusuf.com
data-type.com
juego.deletreados.es
www.dildokopen.eu
www.dotter.app
qa.life.ecflow.app
www.ecoswap.tw
xoon.edlin.app
www.ekitlab.com
erasmus-timesheets.eu
www.console.erasmus-timesheets.eu
www.erasmus-timesheets.eu
admin.escamboapp.com.br
www.exalterbuilders.com
familycastermans.com
www.foremaj.com
product.forestbirdnest.com
webapp.frotanet.com.br
www.gandechaenterprises.com
display.getsoundaura.com
giveaway-picker.com
goldminergame.games
www.gomvion.co.za
test.haraldssons.se
business.hitonari.me
d.hive.properties
www.hyesmo.com
app.hyperwash.se
links.i9tecinformatica.com.br
laiquocbinhan202417090.id.vn
imavirtuosos.com
infr.app
interioz.in
iploc.us
www.jawabli.ma
www.jogosdearena.com
www.liefstelente.co.za
mantheum.com
training.megademi.com
www.meinhaus-3d.de
mg-inv.com
migihome.app
mtnmap.app
camp2022.muslimforumofbritain.co.uk
dev.my-ci.app
nhaxetrungquan.online
omakase-pro.com
pengjun.autos
www.pipecode.com.br
piratemods.in
polskaanestezjologia.pl
www.protoworks3d.com
prymshare.com
qrcode.ug
rjf.io
rootsjordan.com
seancsutton.com
silvercoastconsulting.com
p0avk0e9nicef6hcmog8.smartimob.io
inventario.soft-g.net
www.solverlabs.sk
smart-farm.spatiumxl.com
stupidtest.app
www.surprise-signature.fr
customers.svenfish.com
cms.synergyca.jp
tanishdroptaxi.com
techhelper.app
helper.trustdock.io
www.twimio.com
uslpso.lk
websavvy.cl
www.wecode.io
pattaya.wedtour.ru
substage.webplayer.wexer.com
www.yakilla.com.au
itinerary.zistakis.com
Other domains in certificate