Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=mundofinance.info
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 04, 2026
Valid Until
August 02, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
62:B8:BD:83:E9:1A:EB:41:21:89:9A:05:FF:CD:5C:0E:45:04:D3:28:07:A0:16:80:8B:32:D6:B4:FE:45:4F:B0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
83 domains
lexcel.app
*.lexcel.app
*.api.lexcel.app
*.dev.lexcel.app
*.sharepoint.lexcel.app
*.test.lexcel.app
*.backend.coolstories22.com
*.checkout.coolstories22.com
coolstories22.com
*.coolstories22.com
*.cpanel.coolstories22.com
*.cpcalendars.coolstories22.com
*.cpcontacts.coolstories22.com
*.ftp.coolstories22.com
*.imap.coolstories22.com
*.mail.coolstories22.com
*.pop3.coolstories22.com
*.wallet.coolstories22.com
*.webdisk.coolstories22.com
*.webmail.coolstories22.com
*.whm.coolstories22.com
*.ww12.coolstories22.com
fridrikkjartansson.com
*.fridrikkjartansson.com
*.sitemaps.fridrikkjartansson.com
*.access.lajollashores.net
*.dev.lajollashores.net
lajollashores.net
*.lajollashores.net
ljm0llrzrj.cc
*.ljm0llrzrj.cc
*.14eef1d4-992a-426f-9115-1e98abc30ab8.mundofinance.info
*.23847d2b-5e15-4964-88c6-627b179b5eb8.mundofinance.info
*.4d6911c9-a4f8-4ede-a33a-f0acb568d14c.mundofinance.info
*.a.mundofinance.info
*.admin.mundofinance.info
*.api.mundofinance.info
*.app.mundofinance.info
*.assets.mundofinance.info
*.backup.mundofinance.info
*.dashboard.mundofinance.info
*.dev.mundofinance.info
*.etwijmailer.mundofinance.info
*.m.mundofinance.info
*.mail.mundofinance.info
*.mailer.mundofinance.info
*.marketing.mundofinance.info
mundofinance.info
*.mundofinance.info
*.qa.mundofinance.info
*.secure.mundofinance.info
*.shop.mundofinance.info
*.staging.mundofinance.info
*.stg.mundofinance.info
*.test.mundofinance.info
*.testing.mundofinance.info
*.uat.mundofinance.info
*.v1.mundofinance.info
*.v2.mundofinance.info
*.web.mundofinance.info
polytrack.click
*.polytrack.click
*.ww38.polytrack.click
rqzsttm1476.vip
*.rqzsttm1476.vip
simplebusiness.it
*.simplebusiness.it
*.www.simplebusiness.it
totalmp3.com
*.totalmp3.com
*.wp.totalmp3.com
*.api.youradvisorapproval.co
*.dashboard.youradvisorapproval.co
*.kppylapi.youradvisorapproval.co
*.magento.youradvisorapproval.co
*.mail.youradvisorapproval.co
*.mail1.youradvisorapproval.co
*.out.youradvisorapproval.co
*.smtp2.youradvisorapproval.co
*.v2.youradvisorapproval.co
*.www2.youradvisorapproval.co
youradvisorapproval.co
*.youradvisorapproval.co
Other domains in certificate