Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=moviego.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 04, 2026
Valid Until
April 04, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
54:3A:DB:7C:5E:9E:86:81:CB:CA:85:92:A2:13:D0:22:10:B2:A8:6C:DA:1A:88:BE:B0:7D:F6:B9:78:CB:5F:FE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ccw.com
*.ccw.com
*.1dfqf7.ccw.com
*.3tlz37c0g.ccw.com
*.g6y5dilg8n9kk0vxn5qs.ccw.com
*.kpopcchesap.ccw.com
*.l9e4vy1a.ccw.com
*.pp.ccw.com
aditas.com
*.aditas.com
aerolite.com
*.aerolite.com
atrend.com
*.atrend.com
bigboytoys.com
*.bigboytoys.com
budlite.com
*.budlite.com
carrieredge.com
*.carrieredge.com
charlsschwab.com
*.charlsschwab.com
deltapowertools.com
*.deltapowertools.com
*.bnu.egu.com
egu.com
*.egu.com
*.su.egu.com
erstings-family.com
*.erstings-family.com
exz.com
*.exz.com
fij.com
*.fij.com
goldking.com
*.goldking.com
gunbrocker.com
*.gunbrocker.com
howardhannarealty.com
*.howardhannarealty.com
huj.com
*.huj.com
hvu.com
*.hvu.com
*.lcyutfjd.hvu.com
ixd.com
*.ixd.com
jazzte.com
*.jazzte.com
kithchenaid.com
*.kithchenaid.com
larsonwindows.com
*.larsonwindows.com
lllreptiles.com
*.lllreptiles.com
mcneilracing.com
*.mcneilracing.com
moviego.com
*.moviego.com
myattyahoo.com
*.myattyahoo.com
mygmcard.com
*.mygmcard.com
nij.com
*.nij.com
pvu.com
*.pvu.com
*.pt8.pvv.com
pvv.com
*.pvv.com
reblobster.com
*.reblobster.com
redwingboots.com
*.redwingboots.com
rwi.com
*.rwi.com
*.dashboard.sfmls.com
sfmls.com
*.sfmls.com
*.ww1.sfmls.com
stafall.com
*.stafall.com
texasdirect.com
*.texasdirect.com
uqk.com
*.uqk.com
wwwlbcexpress.com
*.wwwlbcexpress.com
wwwscotiabank.com
*.wwwscotiabank.com
Other domains in certificate