Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cannabisinformer.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 05, 2026
Valid Until
September 03, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D1:98:F8:46:CE:08:20:45:7B:96:76:3D:3D:58:AD:83:23:68:CA:6A:A6:01:55:02:FD:C3:6A:6B:74:86:9F:4A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
accessoryflare.com
*.accessoryflare.com
004064.lol
*.004064.lol
038028.lol
*.038028.lol
049809.com
*.049809.com
80495.co
*.80495.co
825973.lol
*.825973.lol
84728.pro
*.84728.pro
853785.lol
*.853785.lol
870176.lol
*.870176.lol
925466.lol
*.925466.lol
94904.pro
*.94904.pro
99776693.co
*.99776693.co
accesorizeme.com
*.accesorizeme.com
accessorychest.com
*.accessorychest.com
accessoryfinds.com
*.accessoryfinds.com
alicozusrubuu.site
*.alicozusrubuu.site
cannabisinformer.com
*.cannabisinformer.com
chicclothingco.com
*.chicclothingco.com
cleargardenvision.qpon
*.cleargardenvision.qpon
growthbybrightwave.com
*.growthbybrightwave.com
harmonizecareersteps.qpon
*.harmonizecareersteps.qpon
hernia.center
*.hernia.center
kingdomforge.xyz
*.kingdomforge.xyz
kpaam.cc
*.kpaam.cc
qrat68kv.xyz
*.qrat68kv.xyz
qrugs.qpon
*.qrugs.qpon
rbxcfklivd.xyz
*.rbxcfklivd.xyz
rfn7ov.cc
*.rfn7ov.cc
segage1.xyz
*.segage1.xyz
shoeslocator.com
*.shoeslocator.com
shoesprovider.com
*.shoesprovider.com
trackdatacyteam.info
*.trackdatacyteam.info
trendynshop.com
*.trendynshop.com
ueama.qpon
*.ueama.qpon
vbocjxdctq.xyz
*.vbocjxdctq.xyz
verifiedatacysolutions.info
*.verifiedatacysolutions.info
visitfortbragg.com
*.visitfortbragg.com
waterleakrepair-gv.click
*.waterleakrepair-gv.click
worklscfoadvisors.click
*.worklscfoadvisors.click
wqcwiv.vip
*.wqcwiv.vip
wqqsnetcqp.xyz
*.wqqsnetcqp.xyz
wtasks.info
*.wtasks.info
www311034.xyz
*.www311034.xyz
xhs33.xyz
*.xhs33.xyz
xn--eebafwo.com
*.xn--eebafwo.com
Other domains in certificate