Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gridpos.site
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 18, 2026
Valid Until
July 17, 2026
36 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:62:A9:EC:12:75:A7:CD:1E:CA:83:84:CB:76:1E:38:71:BE:57:7E:6C:20:DC:48:F2:6A:E5:FD:03:33:80:FA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
77 domains
ball6.live
*.ball6.live
*.d571baa554f5.ball6.live
*.voronezh.ball6.live
alphaez.com
*.alphaez.com
*.random.alphaez.com
camaoculta.com
*.camaoculta.com
*.ww25.camaoculta.com
*.ww38.camaoculta.com
dardin.co
*.dardin.co
deltaairiness.com
*.deltaairiness.com
*.38.eroerotnq.com
eroerotnq.com
*.eroerotnq.com
*.git.eroerotnq.com
*.ww.eroerotnq.com
*.ww7.eroerotnq.com
fvi.au
*.fvi.au
*.wa.fvi.au
*.ci.globusfamilyofbrands.com
globusfamilyofbrands.com
*.globusfamilyofbrands.com
*.demo.gridpos.site
gridpos.site
*.gridpos.site
*.inaam.gridpos.site
*.pk.gridpos.site
*.server.gridpos.site
*.thoughtfulkitchen.gridpos.site
*.tkfpk.gridpos.site
joomeara.com
*.joomeara.com
*.random.joomeara.com
jugnedherberge.de
*.jugnedherberge.de
parasites.com.au
*.parasites.com.au
*.ww25.parasites.com.au
rodent-solutions.com
*.rodent-solutions.com
roofingaustralia.com.au
*.roofingaustralia.com.au
striptizermati.pl
*.striptizermati.pl
*.ww17.striptizermati.pl
*.mail.stripxchat.com
stripxchat.com
*.stripxchat.com
*.cdn.subarucanada.com
subarucanada.com
*.subarucanada.com
*.ww25.subarucanada.com
*.ww38.subarucanada.com
*.autodiscover.themecrest.xyz
*.hostmaster.themecrest.xyz
*.info.themecrest.xyz
*.mail.themecrest.xyz
themecrest.xyz
*.themecrest.xyz
*.webmail.themecrest.xyz
throwback.com.au
*.throwback.com.au
*.ww25.throwback.com.au
*.ww38.throwback.com.au
*.preprod.trion.com.au
*.sandbox.trion.com.au
trion.com.au
*.trion.com.au
*.ww38.trion.com.au
*.random.xn--nhschule-0za.de
xn--nhschule-0za.de
*.xn--nhschule-0za.de
Other domains in certificate