Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=abc-design.studio
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:4E:12:B0:09:6E:D3:3E:28:39:AF:4D:E5:E3:AA:A4:C0:B5:60:FB:E3:B0:05:22:AD:4B:DE:34:7B:BA:AD:F4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
benjy.com
*.benjy.com
*.mail.benjy.com
*.outlook.benjy.com
99math.online
*.99math.online
abc-design.studio
*.abc-design.studio
almeriagreenfees.com
*.almeriagreenfees.com
*.ww25.almeriagreenfees.com
artview.com.au
*.artview.com.au
bergoogleo.com
*.bergoogleo.com
*.cpanel.bergoogleo.com
*.hostmaster.bergoogleo.com
*.mail.bergoogleo.com
*.webdisk.bergoogleo.com
*.webmail.bergoogleo.com
*.www.bergoogleo.com
chiron.bio
*.chiron.bio
customintegrate.xyz
*.customintegrate.xyz
*.ww16.customintegrate.xyz
girlguides.com.au
*.girlguides.com.au
*.ww25.girlguides.com.au
hnbgu.info
*.hnbgu.info
*.mailbox.hnbgu.info
*.aiqua.iot.de
*.esec.iot.de
*.fusion.iot.de
iot.de
*.iot.de
*.poeggeler.iot.de
*.cafeindia1.istriacafe.com
*.coffeesingleserve.istriacafe.com
*.goodfoodmonth.istriacafe.com
istriacafe.com
*.istriacafe.com
*.miranchorestaurantmaryland.istriacafe.com
*.sweetspotcoffeeshoppe.istriacafe.com
*.thefoodalliance.istriacafe.com
*.thekitchennyc.istriacafe.com
*.topratedcoffeemakersx.istriacafe.com
*.vacuumsealerland.istriacafe.com
jowogampangmenang.click
*.jowogampangmenang.click
jsa.services
*.jsa.services
merruckbank.com
*.merruckbank.com
*.admin.noey.com
noey.com
*.noey.com
*.rds.noey.com
*.sales.noey.com
*.hsbc.paleshadow.world
*.mail.paleshadow.world
paleshadow.world
*.paleshadow.world
phukien-congnghe.click
*.phukien-congnghe.click
podollauto.com
*.podollauto.com
postmarket.pro
*.postmarket.pro
real-shop.xyz
*.real-shop.xyz
sedog.cc
*.sedog.cc
*.ww1.sedog.cc
shadyoakscampgroundpigeonforge.com
*.shadyoakscampgroundpigeonforge.com
thebarebones.org
*.thebarebones.org
*.random.towerhamletsgrants.co.uk
towerhamletsgrants.co.uk
*.towerhamletsgrants.co.uk
wearesaudi.net
*.wearesaudi.net
*.mc.wings1848.xyz
*.mc3.wings1848.xyz
wings1848.xyz
*.wings1848.xyz
*.ww25.wings1848.xyz
*.ww38.wings1848.xyz
Other domains in certificate