Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=10-fix.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 06, 2026
Valid Until
April 06, 2026
87 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8A:EA:25:83:FA:3E:D4:2E:64:64:22:57:08:9B:7A:B7:81:D3:39:EF:BA:6E:F9:27:1E:16:AF:73:C3:1E:83:23
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
yassglobals.com
10-fix.com
www.10-fix.com
aarthacorporate.com
abhaychaturvedy.com
achadins.com.br
achawater.com
mf.adesign.work
www.aiteruchat.net
akaiin.com
almaarif-epamm.com
aqfp.ie
dj-visualizer.arborapps.io
atomises.ru
logic-run.awamkoding.com
www.awssamlabs.in
baesync.com
www.ballonah.com
cadvisor.xyz
www.calculofrio.com.br
www.caraaj.com
password.cartoriodonini.com.br
chargesetu.in
applinks.animografe.chayanon.dev
ayyapan.chozhanaaduapps.in
ciphershade.com
www.ciphershade.com
www.doproduction.com.np
search.cookiesjar.in
www.cutoff.live
darbar.live
demarches-360.fr
democraticallianceofzimbabwe.org
devfest-belgium.be
dotwars.me
dzyha.com
www.englishinbox.com.br
enteleonlabs.com
ferienwohnung-am-nicolaiplatz.de
fundlongevity.org
ganttyapp.com
www.grainiq.in
gruasanaro.com.ar
deeplinks.gusfoods.com
ar.catalog.helexhealthcare.com
sonpc.id.vn
ieadjuruaia.com.br
www.innoviqsolution.in
ok.jasperbuil.nl
blog.jianxintt.blog
jsfoods.online
k12.lat
karkainandre.com
liangjunwei.cfd
www.liangjunwei.cfd
www.lideratech.com.br
marine-guard.sbs
mensaconnect2026.com
menui.de
merakiranaup.in
www.mitamukaanlennolle.fi
motocraftpro.in
motocrafts.in
app.musclesync.it
nation04.sg
nemedus.com
nemus-group.com
nextgensmartlab.com
blocks.niora.pro
nordenproject.co
originishub.online
pamyatvgranite.by
www.portstudio.me
projectpages.eu
password-reset.rawrevolt.com
www.recovu.co.uk
register.rezid.net
riseupacademy.co.za
rozliczeniepitu.pl
safegreetpune.in
www.safegreetpune.in
www.www.scaleknot.com
start.simulationslabs.com
smvisionworks.com
swdaycare.com
verify.tavosleep.com
tax-consult.pl
pandit.theunitedurban.com
www.pandit.theunitedurban.com
rafeeq.thinkincode.co.za
join.trbu.app
app.tro-x.com
verifyiftheyarereal.com
www.vsits.la
www.wayugo.ai
www.weareairport.com
www.weareport.com
www.yiliao.buzz
yiliao.buzz
app.zoraai.cloud
Other domains in certificate