Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=prettyhomes.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 29, 2026
Valid Until
April 29, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CF:28:69:4C:B6:05:19:62:16:A9:0D:3E:AC:74:04:BD:E8:8E:AD:88:B3:2F:EB:16:20:0A:2F:AD:A0:82:20:78
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
888b.ren
*.888b.ren
02752.loan
*.02752.loan
05501.loan
*.05501.loan
33335.loan
*.33335.loan
53939.pizza
*.53939.pizza
90030.net
*.90030.net
cantabriaromanica.com
*.cantabriaromanica.com
cbqe.com
*.cbqe.com
*.gnekt.cbqe.com
*.ww25.cbqe.com
*.api.deepshare.io
*.datastore-bi.deepshare.io
deepshare.io
*.deepshare.io
*.edge.deepshare.io
*.index.deepshare.io
*.network-report.deepshare.io
*.stat.deepshare.io
*.ww38.deepshare.io
deflippercast.nl
*.deflippercast.nl
dlinxs.com
*.dlinxs.com
earthexport.com
*.earthexport.com
eastcountyhomepage.com
*.eastcountyhomepage.com
fjseafood.com
*.fjseafood.com
gran-victoria-es.top
*.gran-victoria-es.top
hj2024be0c.top
*.hj2024be0c.top
*.ww25.hj2024be0c.top
enclose.it.com
*.enclose.it.com
itslizziegreyy.com
*.itslizziegreyy.com
keepmeclub.com
*.keepmeclub.com
le-sprint.com
*.le-sprint.com
limewow.com
*.limewow.com
lioraroyale.com
*.lioraroyale.com
marjoleinreekersfotografie.nl
*.marjoleinreekersfotografie.nl
moltbok.com
*.moltbok.com
naturever.pl
*.naturever.pl
ng278.cc
*.ng278.cc
nimaimarketing.com
*.nimaimarketing.com
oezfcgl.biz
*.oezfcgl.biz
pizzamolina.ninja
*.pizzamolina.ninja
*.ftp.prettyhomes.org
prettyhomes.org
*.prettyhomes.org
pyaqqb.vote
*.pyaqqb.vote
sailorox.com
*.sailorox.com
stomachmustard.com
*.stomachmustard.com
subidahotelbali.com
*.subidahotelbali.com
swisswinetours.com
*.swisswinetours.com
thingsiwanttorememberwhenigrowup.com
*.thingsiwanttorememberwhenigrowup.com
useairmasonhq.com
*.useairmasonhq.com
weibo2024.xyz
*.weibo2024.xyz
wrightschool.com
*.wrightschool.com
Other domains in certificate