Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hiligaynon.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 21, 2026
Valid Until
July 20, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E3:53:5F:A1:B2:5B:A0:C0:05:35:A0:4D:3F:53:67:99:9A:3A:AA:83:5D:F9:82:62:91:0D:FB:83:B1:07:C2:3E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
78 domains
asecs.com
*.asecs.com
assee.com
*.assee.com
asteriscos.com
*.asteriscos.com
bamola.com
*.bamola.com
bibic.com
*.bibic.com
*.lazar.bibic.com
*.mirko.bibic.com
buadang.com
*.buadang.com
cerradodigital.com
*.cerradodigital.com
cigolo.com
*.cigolo.com
danma.com
*.danma.com
daututaichinh.com
*.daututaichinh.com
didgeridoonas.com
*.didgeridoonas.com
elmaterial.com
*.elmaterial.com
exchangelikes.com
*.exchangelikes.com
fortisinvestment.com
*.fortisinvestment.com
giadrosich.com
*.giadrosich.com
hiligaynon.com
*.hiligaynon.com
infeksiyon.com
*.infeksiyon.com
iskop.com
*.iskop.com
knitalong.com
*.knitalong.com
krayan.com
*.krayan.com
kriskras.com
*.kriskras.com
landfrost.com
*.landfrost.com
lembrete.com
*.lembrete.com
linebaugh.com
*.linebaugh.com
manhammer.com
*.manhammer.com
marksecurity.com
*.marksecurity.com
ozeldedektif.com
*.ozeldedektif.com
piaoji.com
*.piaoji.com
raymourandflannigan.com
*.raymourandflannigan.com
screenglare.com
*.screenglare.com
sedlaks.com
*.sedlaks.com
shehulk.com
*.shehulk.com
spaceestate.com
*.spaceestate.com
tempoedenaro.com
*.tempoedenaro.com
wangpei.com
*.wangpei.com
widness.com
*.widness.com
wiedey.com
*.wiedey.com
yarrells.com
*.yarrells.com
Other domains in certificate