Cached · just now
77/100 SECURITY SCORE

Certificate Information

Subject
CN=candlesbattle.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
January 14, 2026
Valid Until
April 14, 2026 89 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
90:57:AB:81:E2:D0:77:C1:18:CD:87:4E:98:96:49:EB:CF:F3:02:10:22:FA:9B:F3:9B:20:8A:CE:2D:F2:20:08
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
yedcare.com

Other domains in certificate

www.116os.de
app.acosh.acuizen.com
aisia.fr
aleefglobal.com
city-izu.anbi-remind.jp
puma.bangdiem.vn
www.biblifacil.com.br
www.blocktech.com.br
bottin-etoile-filante.org
bytesand.ai
camarusproduction.com
candlesbattle.com
capacitadero.org
app2.capslocksupply.com
casahorizon.com
cavach.fi
himher.chainram.com
cheerstand.net
app.cherie.care
fr.clearinspect.co.uk
www.bookonewaydroptaxi.co.in
jointheq.countdown.co.nz
craimermarketing.com
darkwinston.me
deezeydigital.com
www.dgipindia.com
djdavyjones.com
drinkfrizzi.com
www.shop.durerkert.com
auth.elitelink.space
wallet.emoney.ge
www.essenceofmath.kr
faceatious.com
novadongthap.fastvalue.vn
www.fenerbahce2035.com
login.flavorit.com
auth.foresthoa.io
betterclean.getchatit.com
link.halokas.com
hey-gee.com
igphadmin.igphkamalanagar.in
imelvilentcia.com
lucky.tvl.io.vn
irunica.com
jbautomation.dev
www.jkp-tech.com
jobbing.cloud
jupiteralena.com
kaoyibei.com
krakenreparaciones.com
kulabu.dk
app-staff.kyouseinomori.jp
laareperiadc.com
www.littleleo.in
www.lokalup.my
www.makemydecor.in
marcrlee.com
www.marian-klose.com
massymahamli.com
mdmp.chat
app.troca.med.br
www.midsummerwool.com
www.musicmergers.com
next.cms.mycure.md
staging.developer.mygig.com.au
neoprep.in
www.npcpower.se
oggamehub.xyz
art.onthewall.io
www.oogvooronderwijs.nl
orange-stitch.com
dev.pekopal.com
auth.playbook.vc
www.progettopat.it
auth.prompttown.ai
przeszytepasja.pl
quickmap.cc
www.radyproridice.cz
raiseagriculture.com
www.ricardojustino.com.br
cuetime.robholmes.app
sixspherellc.com
spicehairbraiding.com
dealer.stockwall.in
webmd.labs.summersummary.com
tajiribe.zone
talktoany.com
www.techxflow.xyz
www.thegamegenies.com
ezlink.timeskip.dev
live.torriani.com.br
links.uat.myid-idp.unifiedpost.com
www.urbanodelivery.com.br
vanstransport.fr
ailatrieuphu.vppharm.vn
auth.wapp-analytics.com
wephemeral.com
school.withreaders.com
senangpayreturn.zehoe.com