Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=opensupplies.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026
34 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
31:BB:63:63:FA:84:B4:C2:6B:88:BD:3E:B6:97:B7:8A:7E:71:45:62:2D:F2:6C:CE:4C:CE:06:B5:BF:67:45:9B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mostlyirrelevant.info
*.mostlyirrelevant.info
123movies-free.online
*.123movies-free.online
91yzdh.xyz
*.91yzdh.xyz
*.ww38.91yzdh.xyz
australiantowing.com.au
*.australiantowing.com.au
beyondpsikoloji.com
*.beyondpsikoloji.com
*.cpanel.beyondpsikoloji.com
chatirbste.com
*.chatirbste.com
dar76xmk.cc
*.dar76xmk.cc
earfquake.cn
*.earfquake.cn
*.wwww.earfquake.cn
f2m169.site
*.f2m169.site
*.ww.f2m169.site
*.ww38.f2m169.site
gartenofbanbangame.com
*.gartenofbanbangame.com
*.ww25.gartenofbanbangame.com
golos-festival.online
*.golos-festival.online
*.ww38.golos-festival.online
hk-72.com
*.hk-72.com
*.hostmaster.hpindtantink.com
hpindtantink.com
*.hpindtantink.com
importashop.com
*.importashop.com
*.m.importashop.com
irbourse.com
*.irbourse.com
*.ww25.irbourse.com
*.www.irbourse.com
jobshop.com.au
*.jobshop.com.au
*.smtpseguro.jobshop.com.au
*.ww38.jobshop.com.au
jowosuperwin.click
*.jowosuperwin.click
jpslot.cc
*.jpslot.cc
kvbillard.eu
*.kvbillard.eu
*.admin.live-sports.site
live-sports.site
*.live-sports.site
lrwao.online
*.lrwao.online
*.autoconfig.memangbegitu.click
memangbegitu.click
*.memangbegitu.click
netfilm.app
*.netfilm.app
*.ww38.netfilm.app
opensupplies.co.uk
*.opensupplies.co.uk
*.www.opensupplies.co.uk
privateromance.life
*.privateromance.life
*.forum.retailtrader.info
*.journal.retailtrader.info
retailtrader.info
*.retailtrader.info
*.trades.retailtrader.info
*.videos.retailtrader.info
santandee.de
*.santandee.de
*.shop.santandee.de
*.store.santandee.de
*.test.santandee.de
smalldogtlv.com
*.smalldogtlv.com
*.ww25.smalldogtlv.com
*.api.socialmediatoday.co
*.m.socialmediatoday.co
socialmediatoday.co
*.socialmediatoday.co
*.www.socialmediatoday.co
*.sitemap.topitalianhotels.com
topitalianhotels.com
*.topitalianhotels.com
Other domains in certificate