Open
Cached
·
just now
91/100
SECURITY SCORE
Certificate Information
Subject
CN=kidsdictionary.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 13, 2026
Valid Until
April 13, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7C:3A:FF:EA:A9:36:3F:3B:6B:63:2D:B3:97:C2:2B:71:51:32:BE:7A:C4:05:9F:4F:1E:A6:C8:61:AE:34:69:F9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(),midi=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),gyroscope=(),fullscreen=(self),payment=()
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
accvalue.com
*.accvalue.com
*.homes.accvalue.com
28bs.xyz
*.28bs.xyz
*.hihi.28bs.xyz
*.hihi5.28bs.xyz
*.pdoe5.28bs.xyz
*.pipeline.28bs.xyz
*.webmail.28bs.xyz
*.wwweb.28bs.xyz
*.xf.28bs.xyz
*.xf5.28bs.xyz
*.asp.claudenolancadillac.com
claudenolancadillac.com
*.claudenolancadillac.com
*.hereweb.claudenolancadillac.com
*.imap.claudenolancadillac.com
*.map02.claudenolancadillac.com
*.mobile.claudenolancadillac.com
*.oh.claudenolancadillac.com
*.v2.claudenolancadillac.com
companioncareveterinaryclinic.com
*.companioncareveterinaryclinic.com
*.imap.companioncareveterinaryclinic.com
*.staging.companioncareveterinaryclinic.com
*.aercev.dsh7.yachts
*.ayzkex.dsh7.yachts
*.bhggjj.dsh7.yachts
*.cweebc.dsh7.yachts
*.czq.dsh7.yachts
dsh7.yachts
*.dsh7.yachts
icecsme.org
*.icecsme.org
*.sitemap.icecsme.org
kidsdictionary.co
*.kidsdictionary.co
*.ww17.kidsdictionary.co
luxmovies.co
*.luxmovies.co
mamitips.xyz
*.mamitips.xyz
*.ww25.mamitips.xyz
*.dev.movietg.online
movietg.online
*.movietg.online
*.random.movietg.online
*.app.omarbwhats.com
*.com.omarbwhats.com
*.imap.omarbwhats.com
*.net.omarbwhats.com
omarbwhats.com
*.omarbwhats.com
*.pop3.omarbwhats.com
*.cpanel.pharmacytechniciantoday.com
*.members.pharmacytechniciantoday.com
pharmacytechniciantoday.com
*.pharmacytechniciantoday.com
*.dc-fb7e533f6e13.radiodespertar.com
radiodespertar.com
*.radiodespertar.com
video65.xyz
*.video65.xyz
*.breitling.watchfinder.com.au
*.dev.watchfinder.com.au
*.e.watchfinder.com.au
*.info.watchfinder.com.au
*.internal.watchfinder.com.au
*.iwc.watchfinder.com.au
*.omega.watchfinder.com.au
*.prod.watchfinder.com.au
*.qa.watchfinder.com.au
*.rolex.watchfinder.com.au
*.tag-heuer.watchfinder.com.au
watchfinder.com.au
*.watchfinder.com.au
*.login.weaksports.xyz
*.md.weaksports.xyz
*.mww99.weaksports.xyz
weaksports.xyz
*.weaksports.xyz
*.ww.weaksports.xyz
*.ww12.weaksports.xyz
*.ww7.weaksports.xyz
*.ww99.weaksports.xyz
*.www.weaksports.xyz
*.hostmaster.xn--gartengert-y5a.de
xn--gartengert-y5a.de
*.xn--gartengert-y5a.de
Other domains in certificate