76/100 SECURITY SCORE

Certificate Information

Subject
CN=cairnsvacations.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026 67 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
29:96:76:A8:22:9A:23:E3:A8:10:B9:07:5F:E4:DC:D0:88:8B:78:14:61:C9:09:39:2C:05:2A:74:DF:02:8F:FE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
beginningstechnology.com *.beginningstechnology.com

Other domains in certificate

1xbetlogin.org *.1xbetlogin.org
42911.me *.42911.me
70720.sx *.70720.sx
activateamplifyycrown.info *.activateamplifyycrown.info
bowuloak.com *.bowuloak.com
cairnsvacations.com.au *.cairnsvacations.com.au
cleargossip.xyz *.cleargossip.xyz
*.a38712c4-7f3e-44ac-a998-8faa3c7f8ab0.copilothub.co *.app.copilothub.co copilothub.co *.copilothub.co *.hs3.copilothub.co *.www.copilothub.co
dgf468.cc *.dgf468.cc
gopushbutton.com *.gopushbutton.com
*.00i9.harnessamplifyycrown.info harnessamplifyycrown.info *.harnessamplifyycrown.info
hr-and-payroll-software-us-14.click *.hr-and-payroll-software-us-14.click
images.asia *.images.asia
indiamap.biz *.indiamap.biz
j7xwm.mom *.j7xwm.mom
jointherecipe.com *.jointherecipe.com
mechanicsville.net *.mechanicsville.net *.smtp.mechanicsville.net *.vpn.mechanicsville.net
mejorwhisky.top *.mejorwhisky.top
nordivra.sbs *.nordivra.sbs
*.mail.pitchrater.com pitchrater.com *.pitchrater.com
premniketan.in *.premniketan.in
promosuave.com *.promosuave.com *.store.promosuave.com
road-dune.com *.road-dune.com
robotaxitv.com *.robotaxitv.com
rollingloudfestivalmiamitickets.com *.rollingloudfestivalmiamitickets.com
salonnearme.biz *.salonnearme.biz
security35-se-dafox.click *.security35-se-dafox.click
sepred.org *.sepred.org
sfarstore.com *.sfarstore.com
shiftamplifyymagnet.info *.shiftamplifyymagnet.info
shivkawarsingh.xyz *.shivkawarsingh.xyz
shomaloncauk.com *.shomaloncauk.com
shop-air-fr.com *.shop-air-fr.com
smbautomatorspartners.com *.smbautomatorspartners.com
startpushbutton.com *.startpushbutton.com
synergizeamplifyycrown.info *.synergizeamplifyycrown.info
synergizeamplifyymagnet.info *.synergizeamplifyymagnet.info
theikarialeanbellyjuice.com *.theikarialeanbellyjuice.com
*.m.xn--fhq661bnhlb38a.com xn--fhq661bnhlb38a.com *.xn--fhq661bnhlb38a.com