Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=marinacafe.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 15, 2026
Valid Until
June 13, 2026
35 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:A5:19:B2:6B:29:2A:A4:68:79:02:AC:C7:7B:A0:E5:0A:9F:61:70:FA:71:37:4C:DB:C0:6E:9B:E9:BA:F5:E8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
amazonrime.com
*.amazonrime.com
*.blog.amazonrime.com
*.random.amazonrime.com
365propertiesus.com
*.365propertiesus.com
*.cpanel.365propertiesus.com
*.blog.brettgilio.com
brettgilio.com
*.brettgilio.com
*.c.brettgilio.com
*.cgit.brettgilio.com
*.chat.brettgilio.com
*.d.brettgilio.com
*.e.brettgilio.com
*.git.brettgilio.com
*.irc.brettgilio.com
*.k.brettgilio.com
*.m.brettgilio.com
*.mail.brettgilio.com
*.p.brettgilio.com
*.pass.brettgilio.com
*.r.brettgilio.com
*.sync.brettgilio.com
*.t.brettgilio.com
*.www.brettgilio.com
*.znc.brettgilio.com
campersaustralia.au
*.campersaustralia.au
defendants.com.au
*.defendants.com.au
drycleaners.au
*.drycleaners.au
*.random.drycleaners.au
*.dc-10562dd759bf.eima8.org
eima8.org
*.eima8.org
*.www.eima8.org
exampsurvey.com
*.exampsurvey.com
gogooogle.com
*.gogooogle.com
*.ww25.gogooogle.com
hostcfg.com
*.hostcfg.com
*.hostmaster.hostcfg.com
johns-cafe.com
*.johns-cafe.com
*.random.johns-cafe.com
ktl.au
*.ktl.au
lindale.com.au
*.lindale.com.au
lordeinc.com
*.lordeinc.com
*.random.lordeinc.com
marinacafe.co.uk
*.marinacafe.co.uk
*.random.marinacafe.co.uk
*.carpet.nrtradiant.com
nrtradiant.com
*.nrtradiant.com
*.store.nrtradiant.com
playnfl.com
*.playnfl.com
shingeki-forester.net
*.shingeki-forester.net
silencer-plans.com
*.silencer-plans.com
*.dgw.sshemaletube.com
sshemaletube.com
*.sshemaletube.com
*.hostmaster.sunnyleonsex.com
sunnyleonsex.com
*.sunnyleonsex.com
tennesseereport.com
*.tennesseereport.com
*.hostmaster.ultimate-guitar-repair.com
ultimate-guitar-repair.com
*.ultimate-guitar-repair.com
*.www.ultimate-guitar-repair.com
*.random.veganbowl.au
veganbowl.au
*.veganbowl.au
*.hostmaster.zephyhillsdelivery.com
*.www.zephyhillsdelivery.com
zephyhillsdelivery.com
*.zephyhillsdelivery.com
zid.com.au
*.zid.com.au
Other domains in certificate