Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=lanabe.me
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 12, 2026
Valid Until
April 12, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:A9:72:3E:F5:B5:3D:E6:2D:67:71:9D:EF:68:D3:1C:05:E9:FF:8D:8A:60:0E:45:E8:4A:80:72:0C:EF:7D:E1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
verifyfx.com
*.verifyfx.com
*.12.verifyfx.com
*.38.verifyfx.com
*.46.verifyfx.com
*.48.verifyfx.com
*.53.verifyfx.com
*.55.verifyfx.com
*.58.verifyfx.com
*.79.verifyfx.com
*.clientzone.verifyfx.com
*.ww25.verifyfx.com
*.apis.classlink.co
*.apps.classlink.co
classlink.co
*.classlink.co
*.launchpad.classlink.co
*.myapps.classlink.co
*.students.classlink.co
cloaker.me
*.cloaker.me
*.ww25.cloaker.me
*.ww38.cloaker.me
*.www.cloaker.me
*.autoconfig.douglascowie.com
*.autodiscover.douglascowie.com
*.cpcalendars.douglascowie.com
*.cpcontacts.douglascowie.com
douglascowie.com
*.douglascowie.com
*.ftp.douglascowie.com
*.mail.douglascowie.com
*.sitemaps.douglascowie.com
*.www.douglascowie.com
*.board.gllh7480.xyz
gllh7480.xyz
*.gllh7480.xyz
*.l.gllh7480.xyz
*.production.gllh7480.xyz
*.pwacn.gllh7480.xyz
*.sscn.gllh7480.xyz
*.ww38.gllh7480.xyz
*.autoconfig.gulmeena.com
*.blankapparel.gulmeena.com
*.com.gulmeena.com
gulmeena.com
*.gulmeena.com
*.9d87b4e2-a52e-4c9d-a1dd-1ad402aa9d41.jblav.xyz
*.admin.jblav.xyz
*.d.jblav.xyz
jblav.xyz
*.jblav.xyz
*.wildcard.jblav.xyz
*.ww1.jblav.xyz
*.ww25.jblav.xyz
*.ww3.jblav.xyz
*.ww38.jblav.xyz
*.galeria.kubakonsoloslugu.com
kubakonsoloslugu.com
*.kubakonsoloslugu.com
*.m.kubakonsoloslugu.com
*.wildcard.kubakonsoloslugu.com
*.ww25.kubakonsoloslugu.com
lanabe.me
*.lanabe.me
*.wildcard.lanabe.me
learnforsuccess.co.uk
*.learnforsuccess.co.uk
*.sitemap.learnforsuccess.co.uk
lordcharltonpetspa.com
*.lordcharltonpetspa.com
*.mail.lordcharltonpetspa.com
*.shop.lordcharltonpetspa.com
*.bysh.spo.life
spo.life
*.spo.life
*.argo.thestateofgolf.com
*.bi.thestateofgolf.com
*.checkout.thestateofgolf.com
*.cpcontacts.thestateofgolf.com
*.notexistsadmin.thestateofgolf.com
thestateofgolf.com
*.thestateofgolf.com
*.webmail.thestateofgolf.com
*.www.thestateofgolf.com
*.mail.wakinosawa.com
wakinosawa.com
*.wakinosawa.com
*.ww25.wakinosawa.com
*.www.wakinosawa.com
Other domains in certificate