76/100 SECURITY SCORE

Certificate Information

Subject
CN=celticfoodservices.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 21, 2026
Valid Until
August 19, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
02:F3:DF:2A:E8:08:A3:4F:8C:27:C5:B5:41:57:A8:2F:58:5D:E3:52:CC:6F:FE:DA:73:81:4F:3C:8A:3F:FB:AA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
dancingwiththequeers.com *.dancingwiththequeers.com *.aomits.dancingwiththequeers.com *.app.dancingwiththequeers.com *.dev.dancingwiththequeers.com *.forums.dancingwiththequeers.com *.imagin-accesso.dancingwiththequeers.com *.m.dancingwiththequeers.com *.mail.dancingwiththequeers.com *.new.dancingwiththequeers.com *.old.dancingwiththequeers.com *.remote.dancingwiththequeers.com *.sharepoint.dancingwiththequeers.com *.www.dancingwiththequeers.com

Other domains in certificate

cataclysm-wow.eu *.cataclysm-wow.eu *.forum.cataclysm-wow.eu
*.ad.celticfoodservices.co.uk celticfoodservices.co.uk *.celticfoodservices.co.uk
*.admin.indcareers.in *.app.indcareers.in *.assets.indcareers.in *.betting.indcareers.in *.checkout.indcareers.in *.cloudfront.indcareers.in *.demo.indcareers.in *.dev.indcareers.in *.ftp.indcareers.in *.fxbuwog.indcareers.in *.hostmaster.indcareers.in indcareers.in *.indcareers.in *.m.indcareers.in *.mail.indcareers.in *.mta-sts.indcareers.in *.notexistsdev.indcareers.in *.og.indcareers.in *.owa.indcareers.in *.secure.indcareers.in *.sitemaps.indcareers.in *.static.indcareers.in *.ww.indcareers.in *.www.indcareers.in
praguebeauty.co.uk *.praguebeauty.co.uk *.ww16.praguebeauty.co.uk
*.8aik4t.preparevoiceformteam.info preparevoiceformteam.info *.preparevoiceformteam.info
questschduling.com *.questschduling.com
*.hostmaster.rusreise.de rusreise.de *.rusreise.de
*.account.taxady.com *.assets.taxady.com *.cloud.taxady.com *.demo.taxady.com *.dev.taxady.com *.members.taxady.com *.rd.taxady.com *.rds.taxady.com *.rdweb.taxady.com *.remote.taxady.com *.staging.taxady.com taxady.com *.taxady.com *.test.taxady.com *.vpn.taxady.com *.wkculrd.taxady.com
*.api.wp-estudopg.bet *.backup.wp-estudopg.bet *.dashboard.wp-estudopg.bet *.dev.wp-estudopg.bet *.izjrbglu.wp-estudopg.bet *.mail.wp-estudopg.bet *.mailer.wp-estudopg.bet *.members.wp-estudopg.bet *.qa.wp-estudopg.bet *.secure.wp-estudopg.bet *.staging.wp-estudopg.bet *.stg.wp-estudopg.bet *.v1.wp-estudopg.bet *.v2.wp-estudopg.bet *.web.wp-estudopg.bet wp-estudopg.bet *.wp-estudopg.bet
xn--blasenenzndung-osb.de *.xn--blasenenzndung-osb.de