Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=adopt-a-pet-local.sbs
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 08, 2026
Valid Until
July 07, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8D:28:AE:02:C2:A2:90:25:CA:C0:C8:03:C4:B5:D8:BF:90:52:8C:40:59:E9:34:0F:A7:B3:CC:B7:E7:58:BA:9C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aiber.co
*.aiber.co
adopt-a-pet-local.sbs
*.adopt-a-pet-local.sbs
adrena.co
*.adrena.co
animaldept.cleaning
*.animaldept.cleaning
apprenticeship1.click
*.apprenticeship1.click
belleoftopsail.com
*.belleoftopsail.com
centzonmezcal.com
*.centzonmezcal.com
decomposition.ca
*.decomposition.ca
dental-implant-trial-pirate-527.sbs
*.dental-implant-trial-pirate-527.sbs
digitalcalls3.net
*.digitalcalls3.net
donorvip.com
*.donorvip.com
emailingiconichq.co
*.emailingiconichq.co
fa445.vip
*.fa445.vip
financialstorage.com
*.financialstorage.com
find-picnic-packages.sbs
*.find-picnic-packages.sbs
fintecuphvocab.com
*.fintecuphvocab.com
fiz88.bet
*.fiz88.bet
framework.live
*.framework.live
fwe27.top
*.fwe27.top
g2geasy.world
*.g2geasy.world
galaxyzone513.top
*.galaxyzone513.top
gardenpioneers.xyz
*.gardenpioneers.xyz
gembet99.club
*.gembet99.club
germany-goldbracelet-07.sbs
*.germany-goldbracelet-07.sbs
gorivlyplatform.co
*.gorivlyplatform.co
gplem.loans
*.gplem.loans
highstakespayout.quest
*.highstakespayout.quest
jackpottinghotstreak.quest
*.jackpottinghotstreak.quest
leadflowmaster.com
*.leadflowmaster.com
legendadventure649.info
*.legendadventure649.info
lnqso.day
*.lnqso.day
lululand.co
*.lululand.co
lvhfc.care
*.lvhfc.care
medsbuy.cam
*.medsbuy.cam
talvi.co
*.talvi.co
teologiaybibliafundisalud.com
*.teologiaybibliafundisalud.com
thebridalworkshop.com
*.thebridalworkshop.com
try-overdriveviral.com
*.try-overdriveviral.com
ursvml.care
*.ursvml.care
used-car-46374.click
*.used-car-46374.click
usk50.top
*.usk50.top
woefnab.com
*.woefnab.com
www14253.com
*.www14253.com
youthdance.sbs
*.youthdance.sbs
zz1m5zb.top
*.zz1m5zb.top
Other domains in certificate