Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=4caretakers.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 30, 2026
Valid Until
April 30, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:D6:73:37:41:DF:B2:06:C7:E3:81:3F:C9:0F:DF:E4:7B:C6:3F:62:FC:CF:D4:E4:E5:51:65:B9:BC:30:11:E8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
bobbb.com
*.bobbb.com
*.ts2.bobbb.com
4caretakers.com
*.4caretakers.com
52626493.vip
*.52626493.vip
551.cam
*.551.cam
740346.vip
*.740346.vip
96594053.vip
*.96594053.vip
alltimeap.com
*.alltimeap.com
apexmarketingagency.com
*.apexmarketingagency.com
bosbobet3.com
*.bosbobet3.com
centrobanamex.com.mx
*.centrobanamex.com.mx
chicago.gifts
*.chicago.gifts
convenientcannabis.com
*.convenientcannabis.com
*.workspace.convenientcannabis.com
dreamfashionbd.net
*.dreamfashionbd.net
*.158yzn0lek.fansnovels.com
*.17ecedaf-a373-4f89-811f-12bea8c4856d.fansnovels.com
*.5b57efde-3a92-4ea5-b5bf-697e4059c057.fansnovels.com
*.autodiscover.fansnovels.com
*.cpcontacts.fansnovels.com
fansnovels.com
*.fansnovels.com
*.ftp.fansnovels.com
*.m.fansnovels.com
*.mail.fansnovels.com
*.no.fansnovels.com
*.us.fansnovels.com
*.webdisk.fansnovels.com
*.ww25.fansnovels.com
farmpastra.com
*.farmpastra.com
femboy.hu
*.femboy.hu
fwwfvnnvqrholvbqbnhw.com
*.fwwfvnnvqrholvbqbnhw.com
giannopoulos.shop
*.giannopoulos.shop
guardianswap.com
*.guardianswap.com
hammite.com
*.hammite.com
hunhirado.hu
*.hunhirado.hu
imovie123.com
*.imovie123.com
lemonaderealty.com
*.lemonaderealty.com
lorianneplummercoach.com
*.lorianneplummercoach.com
mcgann.moe
*.mcgann.moe
mend.love
*.mend.love
mostakim.com
*.mostakim.com
mrkstwrt.creditcard
*.mrkstwrt.creditcard
na0ftoi82bzi.com
*.na0ftoi82bzi.com
omn.me
*.omn.me
picturesquepainting.com
*.picturesquepainting.com
spaceanddefence.com
*.spaceanddefence.com
sparkabuzz.com
*.sparkabuzz.com
teachtalk.co
*.teachtalk.co
thenudeart.com
*.thenudeart.com
*.ts.thenudeart.com
uftv.xyz
*.uftv.xyz
victimize.lol
*.victimize.lol
Other domains in certificate