Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.famboard.litapplications.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
December 05, 2025
Valid Until
March 05, 2026
84 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:37:50:85:81:52:4B:F1:23:49:6F:26:25:51:5C:1E:5E:08:2F:BF:E9:7E:8B:C3:1F:3B:5C:01:C5:9D:86:90
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
wylynko.com
www.24studiosplatform.com
feasibility.cisp.28east.co.za
stage-codify.amco.me
sivaganga.anbudroptaxi.com
appdell.com
stage-ui.applogie.com
app.assisimoveisrj.com.br
www.av2s.co
avant-garde.ai
www.balahanuman.app
practicealert.projects.barbenheim.de
glomocontinuity.bbva.com.ar
beforethebark.com
bulgaria.biobarica.com
gbj.projects.bitestechnology.com
booking.bonheurmusic.com
link.busykid.com
mindmover.bytekast.io
tokipona.cervonwong.com
cider.chezzy.ca
chriscostanza.com
mhealth.ssd.co.ke
www.foht.co.ke
audiomaestro.com.sg
www.cribolage.com
qc-staging.divvyupsocks.com
www.edilservizi.net
educationencompassed.com
epic.vision
etain.club
www.ev-app.de
everhartprecision.com
f-billing.com
gameonesports.co
cliente.gestao24h.com
routes.gls-spain.es
gmll.app
app.goedbeter.best
gogisenyitours.net
petals.gracielasmet.com
juggle.gschall.ch
training.hipaamate.com
jattos.de
javabien.net
jfbchurch.com
dashboard.juntofinance.app
kathrynaholston.com
www.laobot.games
lightofloveindia.org
www.famboard.litapplications.com
www.info.vichakanboon.lnw.mn
mediacreationtech.com
app-production.medzy.ca
mexe-mexe.com
test.hoosier.millisite.com
mladentesicart.com
mypunchclock.com
www.mysecr8.com
netzbh.com
www.nine1five.com
noahdamery.com
pagcomanda.com.br
pandamachinecare.com
partialsband.com
go.paybird.app
pingdol.com
beta.pokerwitch.app
pautas.radiolavozdelaselva.org
rayv.me
app.recocards.com
www.retinams.com
rgn.io
link.seamm.io
reef.sekrab.com
bodegasa.sistemascreativos.com
specialday.app
app.speechzap.com
app-dev.stash-app.com
supertechindustries.co
www.svuroleplay.com
cbc.talkb.org
rc.talkb.org
rtbf.talkb.org
practicetest.testive.com
thebeatrixgirls.com
rxjs.thekiba.io
threadsbhavana.com
examglossary.toptabula.com
www.trident-hr.com
salesadmin.varniya.com
veewhy.com
portal.vinayagacrackers.com
nochetec.vlivemedia.com
wan-nyan-wars.art
wimble.games
clock-modern-1.wiselywidgets.com
staging.workmind.com.br
www.zumspot.com
www.zymdev.com
Other domains in certificate