76/100 SECURITY SCORE

Certificate Information

Subject
CN=opensupplies.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 01, 2026
Valid Until
June 30, 2026 34 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
31:BB:63:63:FA:84:B4:C2:6B:88:BD:3E:B6:97:B7:8A:7E:71:45:62:2D:F2:6C:CE:4C:CE:06:B5:BF:67:45:9B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
mostlyirrelevant.info *.mostlyirrelevant.info

Other domains in certificate

123movies-free.online *.123movies-free.online
91yzdh.xyz *.91yzdh.xyz *.ww38.91yzdh.xyz
australiantowing.com.au *.australiantowing.com.au
beyondpsikoloji.com *.beyondpsikoloji.com *.cpanel.beyondpsikoloji.com
chatirbste.com *.chatirbste.com
dar76xmk.cc *.dar76xmk.cc
earfquake.cn *.earfquake.cn *.wwww.earfquake.cn
f2m169.site *.f2m169.site *.ww.f2m169.site *.ww38.f2m169.site
gartenofbanbangame.com *.gartenofbanbangame.com *.ww25.gartenofbanbangame.com
golos-festival.online *.golos-festival.online *.ww38.golos-festival.online
hk-72.com *.hk-72.com
*.hostmaster.hpindtantink.com hpindtantink.com *.hpindtantink.com
importashop.com *.importashop.com *.m.importashop.com
irbourse.com *.irbourse.com *.ww25.irbourse.com *.www.irbourse.com
jobshop.com.au *.jobshop.com.au *.smtpseguro.jobshop.com.au *.ww38.jobshop.com.au
jowosuperwin.click *.jowosuperwin.click
jpslot.cc *.jpslot.cc
kvbillard.eu *.kvbillard.eu
*.admin.live-sports.site live-sports.site *.live-sports.site
lrwao.online *.lrwao.online
*.autoconfig.memangbegitu.click memangbegitu.click *.memangbegitu.click
netfilm.app *.netfilm.app *.ww38.netfilm.app
opensupplies.co.uk *.opensupplies.co.uk *.www.opensupplies.co.uk
privateromance.life *.privateromance.life
*.forum.retailtrader.info *.journal.retailtrader.info retailtrader.info *.retailtrader.info *.trades.retailtrader.info *.videos.retailtrader.info
santandee.de *.santandee.de *.shop.santandee.de *.store.santandee.de *.test.santandee.de
smalldogtlv.com *.smalldogtlv.com *.ww25.smalldogtlv.com
*.api.socialmediatoday.co *.m.socialmediatoday.co socialmediatoday.co *.socialmediatoday.co *.www.socialmediatoday.co
*.sitemap.topitalianhotels.com topitalianhotels.com *.topitalianhotels.com