Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ownbox.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 15, 2026
Valid Until
August 13, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FC:7B:CF:6F:54:09:48:FD:79:30:D1:AA:D1:20:EA:9D:19:63:82:F4:34:7E:89:C1:B9:F0:3F:8F:7F:AF:CB:AF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
03041.me
*.03041.me
aandkdetailing.com
*.aandkdetailing.com
*.cpcontacts.aandkdetailing.com
cbdjust.com
*.cbdjust.com
*.shop.cbdjust.com
*.store.cbdjust.com
*.test.cbdjust.com
*.bi.fujiyamaus.com
*.bruntonjagger.fujiyamaus.com
*.dev.fujiyamaus.com
fujiyamaus.com
*.fujiyamaus.com
*.hostmaster.fujiyamaus.com
*.mba.fujiyamaus.com
*.owa.fujiyamaus.com
*.radio.fujiyamaus.com
*.staging.fujiyamaus.com
*.wordpress.fujiyamaus.com
*.ww25.fujiyamaus.com
*.ww7.fujiyamaus.com
*.www.fujiyamaus.com
halosisterwigs.com
*.halosisterwigs.com
immuophagy.com
*.immuophagy.com
*.apps.m-ds.com
*.lists.m-ds.com
m-ds.com
*.m-ds.com
*.pop3.m-ds.com
originallimousine.it
*.originallimousine.it
*.mail.outliok.com
outliok.com
*.outliok.com
*.portal.outliok.com
*.protection.outliok.com
*.fwoboxing.ownbox.com
*.go.ownbox.com
*.h2ko.ownbox.com
*.hexfiles.ownbox.com
*.hostmaster.ownbox.com
*.indianridge.ownbox.com
*.itsmy.ownbox.com
*.mob-cafe.ownbox.com
*.must-read.ownbox.com
*.myvery.ownbox.com
ownbox.com
*.ownbox.com
*.pd1.ownbox.com
*.southhills.ownbox.com
*.supersixonline.ownbox.com
*.ultrablue.ownbox.com
*.website.ownbox.com
*.ws.ownbox.com
*.wss.ownbox.com
*.ww25.ownbox.com
*.ww38.ownbox.com
*.www.ownbox.com
*.yes.ownbox.com
parolelibere.it
*.parolelibere.it
*.bronies.rc3.io
*.links.rc3.io
*.pixelflut.rc3.io
rc3.io
*.rc3.io
*.api.slutwear.live
*.bbs.slutwear.live
*.hostmaster.slutwear.live
*.m.slutwear.live
slutwear.live
*.slutwear.live
*.main.sportsurhe.net
sportsurhe.net
*.sportsurhe.net
*.app.thevineyard.net
*.dev.thevineyard.net
*.hostmaster.thevineyard.net
*.journal.thevineyard.net
thevineyard.net
*.thevineyard.net
*.helpdesk.ushavelocall.com
*.mail.ushavelocall.com
ushavelocall.com
*.ushavelocall.com
Other domains in certificate