Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=lamastersjewelry.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EC:A3:56:62:04:5C:0A:07:45:17:8A:EA:25:EE:23:ED:4D:28:ED:A1:27:E0:F0:C2:C6:73:8F:01:A8:D6:B0:07
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
blogluongvu.com
*.blogluongvu.com
*.2fwww.blogluongvu.com
*.api.blogluongvu.com
*.app.blogluongvu.com
*.backend.blogluongvu.com
*.demo.blogluongvu.com
*.hostmaster.blogluongvu.com
*.m.blogluongvu.com
*.mail.blogluongvu.com
*.staging.blogluongvu.com
*.test.blogluongvu.com
*.ww12.blogluongvu.com
*.ww7.blogluongvu.com
*.www.blogluongvu.com
787882.vip
*.787882.vip
*.8to8pv.787882.vip
*.api.787882.vip
*.assets.787882.vip
*.crm.787882.vip
*.dev.787882.vip
*.glilzv1.787882.vip
*.hr.787882.vip
*.qa.787882.vip
*.web.787882.vip
*.app.entirewebs.info
*.backup.entirewebs.info
entirewebs.info
*.entirewebs.info
*.eypnmadf.entirewebs.info
*.members.entirewebs.info
*.mta-sts.entirewebs.info
*.qa.entirewebs.info
*.random.entirewebs.info
*.sitemaps.entirewebs.info
*.test.entirewebs.info
*.wildcard.entirewebs.info
*.ahuxetest.jitjit.com
*.api.jitjit.com
*.apps.jitjit.com
*.cloud.jitjit.com
*.demo.jitjit.com
*.dev.jitjit.com
*.help.jitjit.com
*.home.jitjit.com
*.hostmaster.jitjit.com
*.ir.jitjit.com
jitjit.com
*.jitjit.com
*.m.jitjit.com
*.new.jitjit.com
*.old.jitjit.com
*.rdp.jitjit.com
*.rds.jitjit.com
*.rds1.jitjit.com
*.rdweb.jitjit.com
*.remote.jitjit.com
*.store.jitjit.com
*.udpgrcrm.jitjit.com
*.ugtlydemo.jitjit.com
*.ww7.jitjit.com
*.www.jitjit.com
*.admin.lamastersjewelry.com
*.dash.lamastersjewelry.com
lamastersjewelry.com
*.lamastersjewelry.com
*.new.lamastersjewelry.com
*.ww12.lamastersjewelry.com
*.6r10wx.nopromisessignalsonly.com
*.api.nopromisessignalsonly.com
*.app.nopromisessignalsonly.com
*.apps.nopromisessignalsonly.com
*.assets.nopromisessignalsonly.com
*.cloud1.nopromisessignalsonly.com
*.cqffpdemo.nopromisessignalsonly.com
*.demo.nopromisessignalsonly.com
*.dev.nopromisessignalsonly.com
*.fctuhdemo.nopromisessignalsonly.com
*.m.nopromisessignalsonly.com
*.mail.nopromisessignalsonly.com
*.new.nopromisessignalsonly.com
nopromisessignalsonly.com
*.nopromisessignalsonly.com
*.rdp.nopromisessignalsonly.com
*.remote.nopromisessignalsonly.com
*.test.nopromisessignalsonly.com
*.testing.nopromisessignalsonly.com
Other domains in certificate