Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fibwatch.online
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D1:76:72:2D:1B:88:91:EA:C7:CB:86:8D:FB:C1:3A:9E:8A:B6:E3:0C:C7:9E:DB:AC:E8:76:2E:14:29:CE:4F:C3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
66 domains
cooles.com
*.cooles.com
*.bushross.cooles.com
*.connect.cooles.com
*.mailout.cooles.com
*.mx.cooles.com
alterstart.com
*.alterstart.com
*.blog.alterstart.com
axal.pro
*.axal.pro
*.www.axal.pro
ebikes-pedelecs-angebote.de
*.ebikes-pedelecs-angebote.de
*.www.ebikes-pedelecs-angebote.de
*.app.fibwatch.online
fibwatch.online
*.fibwatch.online
*.agent.garnin.com
*.camax.garnin.com
*.carnax.garnin.com
garnin.com
*.garnin.com
*.inreach.garnin.com
*.maps.garnin.com
*.marinesupport.garnin.com
*.alpha.growafrohairlong.com
growafrohairlong.com
*.growafrohairlong.com
*.staging.growafrohairlong.com
*.ww1.growafrohairlong.com
iptvdn.com
*.iptvdn.com
*.ww25.iptvdn.com
*.com.limona.online
limona.online
*.limona.online
mercedesbens.com
*.mercedesbens.com
*.shrd.mercedesbens.com
*.ww38.mercedesbens.com
*.www.mercedesbens.com
*.backend.mutanda.com
mutanda.com
*.mutanda.com
*.bittersweet.phmschools.com
*.flowiseai.phmschools.com
*.insight.phmschools.com
*.launchpad.phmschools.com
*.penn.phmschools.com
phmschools.com
*.phmschools.com
*.qa.phmschools.com
*.staging.phmschools.com
*.ww31.phmschools.com
solutionministry.com
*.solutionministry.com
*.www1.solutionministry.com
*.admin.tk88.bio
tk88.bio
*.tk88.bio
*.hostmaster.wwwcolumbialloyds.com
*.jocuri.wwwcolumbialloyds.com
*.ww25.wwwcolumbialloyds.com
wwwcolumbialloyds.com
*.wwwcolumbialloyds.com
Other domains in certificate