Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=gridwar.io
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 09, 2025
Valid Until
February 07, 2026
62 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B0:41:BE:8F:81:6E:28:44:2A:E3:04:46:E4:59:AA:D9:4A:1E:1D:C1:A9:6D:51:A2:57:9A:49:2E:B1:DA:E7:10
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
www.web-dojo.xyz
abalon.dev
www.agendacinemadesenfants.com
erp.agswift360.com
aichefapp.com
amerikadayanisma.org
ukiuki.anki.life
antoniomarrone.com
www.archh.in
dk.azerp.vn
www.babooncorp.fr
www.bayetov.com
birdsandpeople.info
cms.blueroler.com
bmarchitect.in
devapp.bookingapp.online
byound.com
cp.cakemehome.net
canitrustgoogle.com
caption-x.com
staging.app.carmigo.io
www.chubblies.com
www.hsas.co.in
www.saboogroup.co.in
www.aieye.com.tw
constantine-minhagim.com
app.crocodaily.com
crosswindspk.com
www.cubog.co
cyprus2campus.com
www.dabouqvillage.com
temp.cabinet.dah-dev.top
danielhowe.co.uk
derwandi.ae
dmak.com.br
dropmecalltaxi.com
e3.club
elsombrerodelcoronel.com
ezlivz.com
prod.factorgfcleasing.com
globaltrendzmedia.com
www.graspagain.com
gridwar.io
design.hark.eco
oms.regulation.iamasoft.fr
www.ikspreekmeerdan.nl
www.jma.ae
rabota.dev.kidskey.co
lacrep.info
webblock.litegrade.com
loyaltycloud.ae
prc-agm.ltl-xpo.com
auth.luckyace.io
lyduong.com
spot.lynked.co.jp
www.maitime.fr
www.manualproapp.com
masjidy.fr
admin.mentia-labs.com
dashboard.meupet.io
michaelcurtis.info
solva.staging.mikademy.vn
www.multired.net
myenda.com
mysquadswag.com
auth.nayoo.co
neogreen.ro
app.ngma.social
nsquared.uk
data.nuvowallet.io
sondage.optimedix.info
www.codedfoundation.org.ng
www.panupong.net
parkpulse.io
team.pdr.cloud
pixelloop.com.au
bestellen.pizzaboyz-chinaboyz.de
pomofocustimer.com
qratch.dev
corporate.reachout.ltd
kelompok.rfahmi.com
www.robertoperez.es
www.tesla.ui-clone.ronne.dev
rvodevelopment.com
www.saboocommercial.in
www.sabooezone.com
www.schlagameista.com
www.secumsa.com
www.shetabspopupshop.com
sikkerhedstjek.dk
sysupdate.com.br
login.tunglt.com
portfolio.udaykhare.social
unepal.com
expert.urdoer.com
velislava.info
stamps.vidyagiri.com
wakandamarket.com
wellnessroom.it
wiifi.fr
Other domains in certificate