Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cosmoaction240.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 08, 2026
Valid Until
July 07, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
48:D8:ED:D7:65:41:1F:CC:F5:B2:01:90:CE:2F:53:8D:D8:A8:AE:46:96:2E:FA:B8:C0:5C:0F:CE:50:52:6C:99
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
brewbon.com
*.brewbon.com
10505.blog
*.10505.blog
1395559.cfd
*.1395559.cfd
1stexchange.live
*.1stexchange.live
3338055a7.sbs
*.3338055a7.sbs
519317.com
*.519317.com
57164.blog
*.57164.blog
59856.blog
*.59856.blog
648ee.xyz
*.648ee.xyz
68174bwhyx.xyz
*.68174bwhyx.xyz
75760.blog
*.75760.blog
abundantliving.co
*.abundantliving.co
admiral-x715.site
*.admiral-x715.site
adult-only-hotels-mx-139.sbs
*.adult-only-hotels-mx-139.sbs
ae-digitalmarketingagencies3.sbs
*.ae-digitalmarketingagencies3.sbs
aee3c5vpnr.xyz
*.aee3c5vpnr.xyz
cortexailtd1.com
*.cortexailtd1.com
cosmoaction240.shop
*.cosmoaction240.shop
cosmoexplorer554.shop
*.cosmoexplorer554.shop
couples-therapy-865959924.click
*.couples-therapy-865959924.click
danceart.co
*.danceart.co
darntoughl.com
*.darntoughl.com
digitizingden.com
*.digitizingden.com
digitizingden.net
*.digitizingden.net
dishwasher-job-in-companies-ww-es2.sbs
*.dishwasher-job-in-companies-ww-es2.sbs
drinks-to-weight-loss-en-wp-x-12234.sbs
*.drinks-to-weight-loss-en-wp-x-12234.sbs
dyufjkp576.vip
*.dyufjkp576.vip
efelaa.reviews
*.efelaa.reviews
eliosport.com
*.eliosport.com
elsoft.co
*.elsoft.co
intrepidgardenmaker.xyz
*.intrepidgardenmaker.xyz
invoicefinance.co
*.invoicefinance.co
njzrd.earth
*.njzrd.earth
noet.co
*.noet.co
novarq.co
*.novarq.co
online-english-course.sbs
*.online-english-course.sbs
paito.co
*.paito.co
rlvre.earth
*.rlvre.earth
rockandrolloldies.com
*.rockandrolloldies.com
rocketstudio.co
*.rocketstudio.co
roof-crack-leak-repair-12.click
*.roof-crack-leak-repair-12.click
scalecolesolutionss.com
*.scalecolesolutionss.com
shroomy.co
*.shroomy.co
silversandsbeachresort.com
*.silversandsbeachresort.com
sportxclusive.marketing
*.sportxclusive.marketing
Other domains in certificate