77/100 SECURITY SCORE

Certificate Information

Subject
CN=try-catch.app
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 10, 2026
Valid Until
July 09, 2026 72 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
37:52:FA:51:13:04:F3:8E:23:AE:D5:BB:20:4A:75:19:A5:3D:03:20:CE:0A:EF:DD:66:E7:95:7E:5C:9A:ED:52
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.worddlyreads.com

Other domains in certificate

www.acentik.com
www.aideckstudio.com
app.aiden-platform.com mobile.aiden-platform.com
al-rayan-engineering.com
www.antigonemedia.com
apex-vision.net
ngx-own-qr.apurvapawaskar.in
arrudaerossetticontabil.com.br
aupair-rematch.nl www.aupair-rematch.nl
bliggs.com
bundles.blurb.fail
www.budgetcodesolutions.top
auth.celestialstudio.net
cerealnoble.com
www.citructure.com
clickgrows.in
coinapp.dev
www.compatibilidad-signos.es
cryptonationhub.sol.site
cwlive.in
fpvlink.dagodev.com
cabine-anti-estress.datastore.com.br
dngx.com.br www.dngx.com.br
app.dosidekick.com
dpedestal.com www.dpedestal.com
www.drawink.com.mx
dsgroup.rs
edmngt.org
islamiclighthouse.et3am.com quranlights.et3am.com samicafee.et3am.com
facturadorsri.com
ffinterior.com
fiscoprint.com www.fiscoprint.com
frallappen.se
www.getblinkk.com
gridmate.be
kindergarten.flaizeger.haisotec.de
int.familytree.inguva.com www.inguva.com
kacaapp.com
kaise.space
www.kepleraiapp.com
kpsskazanpro.com
www.l-essence-elle.com
ops.llshopping.in
lukepavia.com www.lukepavia.com
marianamsb.com.br
mass3d.in
mastrivya.com
matchboxxr.com
matheusthurler.com.br
mcui-preview.com
mkwholesalers.co.uk
mulayimmermer.com www.mulayimmermer.com
myceolife.net
nativstock.com
neontd.co
maashesap.novana.org
admin.parityintegration.com staging.admin.parityintegration.com staging.parityintegration.com www.parityintegration.com
sipen.pleasecuddle.me
quizbot.win www.quizbot.win
rankrr.in
receitasdocesfacil.site
www.cloud.rgateway.it
riseirl.com
royalroycedetailing.in
www.shushuy.com
sistema.sindicoerp.com
sistema.sindicoerp.com.br
social-pilot.ai
sssvhunters.in
www.stinkysocks.hockey
link.supportoappletech.com
www.taitarestaurante.com
tarot-del-dia.es www.tarot-del-dia.es
thecostantinos.it
share.timer.watch
try-catch.app
turfly.me
cve-agent-eval.uid4oe.dev
preprod.ukulele-companion.com
tracker.undisturbedmind.com
www.utkina-design.com
valenegocios.pt
www.wsbizcasino.site
zanlystore.com.br