Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=heightsbistro.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 13, 2026
Valid Until
July 12, 2026 65 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:22:EC:BE:2C:4D:92:B8:8E:65:5A:CF:A1:F1:91:05:B5:8C:73:8B:6E:41:C2:C8:7A:01:70:9E:AA:7A:C8:CE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
arius.it *.arius.it *.api.arius.it *.app.arius.it *.backend.arius.it *.demo.arius.it *.dev.arius.it *.hostmaster.arius.it *.mail.arius.it *.report.arius.it *.rot.arius.it

Other domains in certificate

79009.locker *.79009.locker
797570.lol *.797570.lol
836751.com *.836751.com
8923.win *.8923.win
939666.co *.939666.co
95907.mobi *.95907.mobi
abubhabi-ticketc.com *.abubhabi-ticketc.com
agentgalss.com *.agentgalss.com
all4gamers.fun *.all4gamers.fun
appliedcommunications.com.au *.appliedcommunications.com.au *.ww25.appliedcommunications.com.au
arrabidalimpa.com *.arrabidalimpa.com *.fw.arrabidalimpa.com
bsoqy.one *.bsoqy.one
bydwytsyk7tmzrh.top *.bydwytsyk7tmzrh.top
culinarycredibility.food *.culinarycredibility.food
deepblupueswim.com *.deepblupueswim.com
eednv.family *.eednv.family
*.cloud.encryptedbroker.com encryptedbroker.com *.encryptedbroker.com *.rds.encryptedbroker.com *.rdweb.encryptedbroker.com *.rh-api.encryptedbroker.com
fssggt.cn *.fssggt.cn *.vrs.fssggt.cn
heightsbistro.com.au *.heightsbistro.com.au *.ww25.heightsbistro.com.au
hjtwn.today *.hjtwn.today
interactfetchasquads.com *.interactfetchasquads.com
it-views.com *.it-views.com
melbournetowing.com.au *.melbournetowing.com.au *.ww25.melbournetowing.com.au
robokla.com *.robokla.com
roomnook.click *.roomnook.click
ximgc.loans *.ximgc.loans
xxxmovs.wtf *.xxxmovs.wtf
youjizz.cheap *.youjizz.cheap
yuxxc.town *.yuxxc.town
zopbit.top *.zopbit.top
ztnqr.one *.ztnqr.one
*.admin.zv7846.com *.autoconfig.zv7846.com *.backend.zv7846.com *.mail.zv7846.com zv7846.com *.zv7846.com
zzz573.cc *.zzz573.cc