Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pierre-traiteur.be
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D1:B6:B4:EE:DF:B8:26:A8:74:6D:8F:D2:AD:6C:DB:69:FE:5A:B6:E0:E0:8F:32:FA:EE:F0:0F:C8:BD:99:4D:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
nydumpster.com
*.nydumpster.com
advancement.au
*.advancement.au
*.random.advancement.au
art-tatouille.com
*.art-tatouille.com
*.random.art-tatouille.com
be-diamon.be
*.be-diamon.be
buienradara.be
*.buienradara.be
colinwood.be
*.colinwood.be
femmetotale.be
*.femmetotale.be
findmyaccountant.com
*.findmyaccountant.com
*.random.findmyaccountant.com
flexcare.com.au
*.flexcare.com.au
hm-video.xyz
*.hm-video.xyz
*.ww16.hm-video.xyz
internetradio.co.za
*.internetradio.co.za
*.random.internetradio.co.za
keysight.au
*.keysight.au
*.random.keysight.au
medichecks.au
*.medichecks.au
*.random.medichecks.au
newjerseybet.com
*.newjerseybet.com
*.random.newjerseybet.com
newyorkchinese.com
*.newyorkchinese.com
nikkia.com
*.nikkia.com
ninitee.com
*.ninitee.com
northerncolorado.com
*.northerncolorado.com
oaxaco.com
*.oaxaco.com
obezitemerkezi.com
*.obezitemerkezi.com
officialgossipbase.xyz
*.officialgossipbase.xyz
oggettistica.com
*.oggettistica.com
ojosabiertos.com
*.ojosabiertos.com
olderlips.com
*.olderlips.com
*.random.olderlips.com
pierre-traiteur.be
*.pierre-traiteur.be
publicrecordcheck.com
*.publicrecordcheck.com
*.random.publicrecordcheck.com
qne.au
*.qne.au
*.random.qne.au
saunaaquatis.be
*.saunaaquatis.be
*.random.siurfshark.com
siurfshark.com
*.siurfshark.com
skirt.life
*.skirt.life
*.random.sms-2010.com
sms-2010.com
*.sms-2010.com
starnow.be
*.starnow.be
*.asvad1.tripdavisor.com
*.careers.tripdavisor.com
*.dev.tripdavisor.com
*.rentals.tripdavisor.com
*.supply.tripdavisor.com
tripdavisor.com
*.tripdavisor.com
*.ww.tripdavisor.com
*.ww17.tripdavisor.com
*.ww25.tripdavisor.com
*.ww38.tripdavisor.com
*.ww6.tripdavisor.com
Other domains in certificate