Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=trojenamountains.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:67:C7:C2:F2:A5:4A:DF:8A:78:EF:EF:F3:7B:DA:66:05:E8:21:C3:44:21:33:39:6B:48:D5:F4:55:68:0E:FC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
camdencustard.site
*.camdencustard.site
*.doge.camdencustard.site
*.interstellar.camdencustard.site
*.pay.camdencustard.site
bongkar69.net
*.bongkar69.net
*.smtp.bongkar69.net
*.analytics-preprod.candela.club
candela.club
*.candela.club
*.www.candela.club
*.alpha.milieubrigade.nl
milieubrigade.nl
*.milieubrigade.nl
*.uat.milieubrigade.nl
*.hostmaster.sleep.global
sleep.global
*.sleep.global
*.3a1e04a0-4f93-4a7e-8a20-31f7b77539ce.t4play.se
*.5be512a4-9ee3-4ccd-be9c-5d43c766fa58.t4play.se
*.67c1730e-ae05-4faa-9215-c72dce77aac5.t4play.se
*.acofqativera.t4play.se
*.activer.t4play.se
*.activera.t4play.se
*.admin.t4play.se
*.aktiera.t4play.se
*.aktiver.t4play.se
*.aktivera.t4play.se
*.aktiveria.t4play.se
*.aktivers.t4play.se
*.aktiveta.t4play.se
*.aktvera.t4play.se
*.altivera.t4play.se
*.analytic.t4play.se
*.api.t4play.se
*.app.t4play.se
*.ativera.t4play.se
*.backend.t4play.se
*.beta.t4play.se
*.bi.t4play.se
*.cbeb61e4-620b-4bfd-ab07-f8bf0342154e.t4play.se
*.chart.t4play.se
*.cicd-production.t4play.se
*.cloud.t4play.se
*.cloudvpn.t4play.se
*.dashboard.t4play.se
*.dashs.t4play.se
*.erp.t4play.se
*.evo.t4play.se
*.f1958ae1-5721-4a37-bee3-63bc16d4096f.t4play.se
*.login.t4play.se
*.m.t4play.se
*.metric.t4play.se
*.minasidor.t4play.se
*.notexistsaktivera.t4play.se
*.notexistsapp.t4play.se
*.rd.t4play.se
*.rds.t4play.se
*.rdweb.t4play.se
*.remote.t4play.se
*.staging.t4play.se
*.superset.t4play.se
t4play.se
*.t4play.se
*.vpn.t4play.se
*.webmail.t4play.se
*.ww.t4play.se
*.www.t4play.se
*.backend.talpa.it
*.hostmaster.talpa.it
*.mx.talpa.it
talpa.it
*.talpa.it
*.hostmaster.thecrabs.it
*.owa.thecrabs.it
thecrabs.it
*.thecrabs.it
*.m.trojenamountains.com
trojenamountains.com
*.trojenamountains.com
*.1846m.w95pqmzukf.xyz
*.bnbod.w95pqmzukf.xyz
w95pqmzukf.xyz
*.w95pqmzukf.xyz
*.dmail.wegothere.org
wegothere.org
*.wegothere.org
Other domains in certificate