Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=portfoliocapital.co
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 13, 2026
Valid Until
September 11, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7A:3C:06:A3:9E:C1:B9:23:F1:F2:3C:B8:59:59:38:B9:45:8D:BF:EC:FB:3C:59:08:8E:F2:36:7E:59:F0:5F:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
av8av.com
*.av8av.com
*.25.av8av.com
*.wvw.av8av.com
*.ww25.av8av.com
4gloryandbeaty.online
*.4gloryandbeaty.online
*.9x0g.assy.net
assy.net
*.assy.net
*.ww25.assy.net
*.ww38.assy.net
casinocruise.online
*.casinocruise.online
*.cicd.casinocruise.online
*.ex.casinocruise.online
*.forum.casinocruise.online
*.mailgate.casinocruise.online
*.32.confirmationorder.com
confirmationorder.com
*.confirmationorder.com
*.fiverr-to.confirmationorder.com
*.get.confirmationorder.com
*.ww38.confirmationorder.com
emsculpt.studio
*.emsculpt.studio
*.airflow.fourtouici.pro
fourtouici.pro
*.fourtouici.pro
*.store.fourtouici.pro
granitehomes.au
*.granitehomes.au
*.app.greatergoods.shop
*.dev.greatergoods.shop
greatergoods.shop
*.greatergoods.shop
*.benvze.holistichealthdigest.com
holistichealthdigest.com
*.holistichealthdigest.com
*.hostmaster.holistichealthdigest.com
islandesi.com
*.islandesi.com
ivyinail.com
*.ivyinail.com
*.ww38.ivyinail.com
jukebox.group
*.jukebox.group
*.jukeboxstudio.jukebox.group
karadatokokoro.xyz
*.karadatokokoro.xyz
kmzjgq.cn
*.kmzjgq.cn
*.n6.kmzjgq.cn
medstop724.skin
*.medstop724.skin
*.mi5371.medstop724.skin
meridian-lp.co
*.meridian-lp.co
*.ww38.meridian-lp.co
mficp.pics
*.mficp.pics
*.shop.mficp.pics
*.32.pornfuror.com
*.ads.pornfuror.com
pornfuror.com
*.pornfuror.com
*.www.pornfuror.com
portfoliocapital.co
*.portfoliocapital.co
*.m.stevedraper.com
*.random.stevedraper.com
stevedraper.com
*.stevedraper.com
*.ducaqs.tipclub88.com
tipclub88.com
*.tipclub88.com
*.06.walmartgirft.com
*.2018.walmartgirft.com
*.admin.walmartgirft.com
*.cl.walmartgirft.com
*.deloitte-analyticsmacnica-poc.walmartgirft.com
*.dev.walmartgirft.com
*.prd.walmartgirft.com
*.random.walmartgirft.com
*.stage.walmartgirft.com
*.vmi.walmartgirft.com
walmartgirft.com
*.walmartgirft.com
*.ww38.walmartgirft.com
*.www.walmartgirft.com
Other domains in certificate