Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=pepsihockeysweps.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:1B:88:69:9C:E2:C1:1A:79:64:28:64:20:33:3E:C6:99:AF:10:00:92:3F:7C:C7:8A:8B:F8:36:E3:92:29:0D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
91 domains
ariberto.com
*.ariberto.com
003693.com
*.003693.com
100744.xyz
*.100744.xyz
10765.net
*.10765.net
297289.com
*.297289.com
30079.locker
*.30079.locker
38450.academy
*.38450.academy
60503.agency
*.60503.agency
749716.com
*.749716.com
77066.co
*.77066.co
777dewa.blog
*.777dewa.blog
77up-sub.com
*.77up-sub.com
agathon.net
*.agathon.net
aiflexible.com
*.aiflexible.com
amb888vip.net
*.amb888vip.net
amministrazioneimmobiliare.com
*.amministrazioneimmobiliare.com
amnetmortgages.com
*.amnetmortgages.com
anagabrieltour.com
*.anagabrieltour.com
andreya.net
*.andreya.net
ankitjain.me
*.ankitjain.me
apifbuawork.online
*.apifbuawork.online
autoextreme.com
*.autoextreme.com
bandit77.asia
*.bandit77.asia
bingonapoli.com
*.bingonapoli.com
cantagalli.com
*.cantagalli.com
caricaelettricaautomobili.com
*.caricaelettricaautomobili.com
cav302.xyz
*.cav302.xyz
circondati.com
*.circondati.com
comebabbiocli.com
*.comebabbiocli.com
compostelle.com
*.compostelle.com
compramelo.com
*.compramelo.com
*.intranet.pepsihockeysweps.com
pepsihockeysweps.com
*.pepsihockeysweps.com
*.store.pepsihockeysweps.com
slotxo-bet.com
*.slotxo-bet.com
sportsdrills.com
*.sportsdrills.com
studiovisivo.com
*.studiovisivo.com
*.docs.tahitisnob.com
tahitisnob.com
*.tahitisnob.com
tenaglie.com
*.tenaglie.com
terreni.co
*.terreni.co
terrestri.com
*.terrestri.com
testimonedigeova.net
*.testimonedigeova.net
testimoniare.com
*.testimoniare.com
thegentlemenschoice.net
*.thegentlemenschoice.net
thegeorgetowndaily.com
*.thegeorgetowndaily.com
trafficcycle.com
*.trafficcycle.com
Other domains in certificate