Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=thomas-degry.be
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 08, 2026
Valid Until
April 08, 2026
53 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:1C:DF:DE:6B:2A:83:55:C0:3D:2B:58:DF:DD:1F:07:03:20:EA:3B:36:50:ED:D1:25:30:F4:E1:C7:AA:36:37
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
bransonvacation.com
*.bransonvacation.com
*.comingsoon.bransonvacation.com
*.www.bransonvacation.com
*.admin.batteiger.com
*.api.batteiger.com
batteiger.com
*.batteiger.com
*.nwqmeshl.batteiger.com
*.remote.batteiger.com
*.rustore.batteiger.com
*.ww16.batteiger.com
*.ww25.batteiger.com
*.ww38.batteiger.com
*.www.batteiger.com
bestbodies.com.au
*.bestbodies.com.au
cyclone.agency
*.cyclone.agency
*.mail.cyclone.agency
*.11.feiticeira.com
*.16.feiticeira.com
feiticeira.com
*.feiticeira.com
free4u.sbs
*.free4u.sbs
*.mail.free4u.sbs
*.random.free4u.sbs
*.com.gaudi.studio
gaudi.studio
*.gaudi.studio
*.sitemaps.gaudi.studio
*.store.gaudi.studio
jackjohnson.com.au
*.jackjohnson.com.au
*.mail.jackjohnson.com.au
*.admin.judeszone.com
judeszone.com
*.judeszone.com
*.server.judeszone.com
*.ww25.judeszone.com
*.www.judeszone.com
*.www1.judeszone.com
*.www4.judeszone.com
*.img8.leko.cc
leko.cc
*.leko.cc
looking.au
*.looking.au
mma-latino.com
*.mma-latino.com
netfertiti.org
*.netfertiti.org
*.m.primaria-blagesti.net
primaria-blagesti.net
*.primaria-blagesti.net
*.ww25.primaria-blagesti.net
rentwashingtondc.com
*.rentwashingtondc.com
*.crc.serverftp.com
*.dakinquelia.serverftp.com
*.fastpro-mu.serverftp.com
*.gabrielmoser.serverftp.com
*.hosterfile-download.serverftp.com
*.madev.serverftp.com
*.microsoftinc.serverftp.com
*.modemcasa.serverftp.com
*.onlyhack.serverftp.com
*.petikerd.serverftp.com
*.random.serverftp.com
*.secchasaloh.serverftp.com
serverftp.com
*.serverftp.com
*.stf.serverftp.com
*.tornado-host.serverftp.com
sydneydivorcelawyer.au
*.sydneydivorcelawyer.au
*.blog.thomas-degry.be
*.hulstefeest.thomas-degry.be
thomas-degry.be
*.thomas-degry.be
*.d2gfj11vjk5s73885s40.vizzion.bet
*.dash.vizzion.bet
vizzion.bet
*.vizzion.bet
wgxn.com
*.wgxn.com
*.ww38.xn--hhnershop-q9a.com
xn--hhnershop-q9a.com
*.xn--hhnershop-q9a.com
Other domains in certificate