77/100 SECURITY SCORE

Certificate Information

Subject
CN=kline.speakylink.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
October 11, 2025
Valid Until
January 09, 2026 57 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:BD:23:A0:1A:E9:E2:68:7B:D7:B8:8C:0D:33:19:B6:24:B8:C6:C8:9C:96:7F:37:6E:63:43:E2:63:31:E5:CD
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.whatsintheboxny.com

Other domains in certificate

sales.academondo.com
rubix.akhilchaudhary.in
www.algotrading.studio
chartslab.alpha4all.it
demo.appfluencer.com
aprendaviola.com.br
caviar.at-the-m.com
beyondplatforms.xyz
www.blueshieldconsult.com
briananderson.xyz
cervantestrescruces.uy
city-transceiver.jp
lentemania.clau.io
www.coolpress.com
jobmackerel.dee-studio.com
www.deukae.com
dashboard.atlas.dimpr.nl
www.dinosaurcoasttrackguide.com.au
www.ebflutningar.is
ecabas.biz
endlessvn.io
live.environment-prize.com
admin-test.zeus.fidelissd.com
flowerdog.com
accounts.dev.fly.co
foresight.sh
furryworld.online
gabrielapeacock.com
ny.gaume.org
challenge-maiavelo.geovelo.fr
www.gideonpeprah.com
app.gonerocket.com
www.gosh.live
www.gpsafira.com.br
graymarket.ch
greentor.com
secure.haulex.com
merchant.heartandsoil.co
app.hub.la
inscripcion.impulsofitness.com
www.inceptive.com
istvanteto.hu
www.jasonkigozi.com
jiseon.de
www.joinblynk.com
surveys.k-9apps.com
www.keytraining.net
kismehecskeetelbar.hu
stg.ktmcouriers.com
masterplan.laming.me
lankastatistics.com
lara.support
articles.libertytips3.com
liveeasy.io
michang-admin.m1studio.co
www.melcornsoft.com
midteideconsulting.no
timer.moonspam.com
app.mulle.ee
stagetimer.neodarque.com
partner-daikinapp.nexlab.vn
notehive.app
bs.nuvowallet.io
nyimmigration.in
ax1m8in.onehypernet.dev
onlymilan.fans
landing.dev.park-stock.com
patudospatodos.pt
paulinasart.com
booking.plan2win.be
pompilhakids.com.br
www.prepphysio.com.au
www.psycholog-bialek.pl
www.querelo.com
rainydawn.io
rememberingroger.net
www.renansujii.com
www.ridexp.fr
sanghoonjun.com
www.shieldedlivingharim.com
slashsend.io
www.sneakercoder.com
kline.speakylink.com
stivayou.com
www.streetiq.ca
telecompaper.com
thalitapassos.com.br
www.threecolumnsllc.com
www.toe.com.mx
travisrotz.com
www.tubelaces.es
villamaria.ualabee.com
survey.up-diving.com
www.uppso.com
dao.usdtify.com
portal-dev.wehealth.org
www.westfield-companies.com
wherefree.net
store1.zweb.shop