Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=seasonaltraveltrends.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:DC:E9:CC:24:F4:72:BF:57:BB:83:AE:F5:7D:FE:4F:DE:F9:8D:7F:BA:82:EB:96:80:23:E2:6A:7F:93:1D:86
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
spotlessspace.co
*.spotlessspace.co
datakeyz.top
*.datakeyz.top
davkitchen.com
*.davkitchen.com
deadstock.it
*.deadstock.it
defaico.in
*.defaico.in
delightfultravelwonder.xyz
*.delightfultravelwonder.xyz
dental-grants-jp-agent.click
*.dental-grants-jp-agent.click
depois.me
*.depois.me
*.e.depois.me
designer1st.com
*.designer1st.com
sahara.chat
*.sahara.chat
sahuohroxx.cn
*.sahuohroxx.cn
saiebouncybalm.com
*.saiebouncybalm.com
sailboat-rental-240647562.click
*.sailboat-rental-240647562.click
sanificazioneroma.net
*.sanificazioneroma.net
searchingeagle.com
*.searchingeagle.com
seasonaltraveltrends.xyz
*.seasonaltraveltrends.xyz
securecua.com
*.securecua.com
semutwinrtp-2025.xyz
*.semutwinrtp-2025.xyz
sensod.org
*.sensod.org
settlepay.us
*.settlepay.us
shoeslob.com
*.shoeslob.com
shuwk.pro
*.shuwk.pro
shwpwa15.com
*.shwpwa15.com
shywr.xyz
*.shywr.xyz
sig.design
*.sig.design
simplymore.me
*.simplymore.me
simpson-judge-recruitment-team.com
*.simpson-judge-recruitment-team.com
sisliescort1.vip
*.sisliescort1.vip
slata777-app.vip
*.slata777-app.vip
slowtasking.co
*.slowtasking.co
smartboxerhotel.com
*.smartboxerhotel.com
smartofficetools.us
*.smartofficetools.us
smartviewwear.com
*.smartviewwear.com
snclud588.icu
*.snclud588.icu
sneakervault.org
*.sneakervault.org
sno.it
*.sno.it
snoyya.com
*.snoyya.com
soccer24.co
*.soccer24.co
socialamerican.com
*.socialamerican.com
socialhealth.it
*.socialhealth.it
sofkaroniiosdalogic.cyou
*.sofkaroniiosdalogic.cyou
software-it2.click
*.software-it2.click
spatialviolin.com
*.spatialviolin.com
sqlhubzz.com
*.sqlhubzz.com
Other domains in certificate