Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=wearther.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 04, 2026
Valid Until
August 02, 2026 87 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
AA:D3:1E:60:9C:1A:BC:0D:D8:E0:1F:E4:D3:D7:46:A5:3E:FC:11:C7:4D:33:92:05:D0:BF:B3:B6:91:FB:CA:FA
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

88 domains
closeings.com *.closeings.com *.forums.closeings.com

Other domains in certificate

6g-bet.com *.6g-bet.com *.ww25.6g-bet.com
9xav17.xyz *.9xav17.xyz *.g89kw.9xav17.xyz *.iovou.9xav17.xyz *.l0r4m.9xav17.xyz
accoppiare.com *.accoppiare.com
bismarckdent.de *.bismarckdent.de *.mail.bismarckdent.de
*.blog.dolarbebe.com dolarbebe.com *.dolarbebe.com *.m.dolarbebe.com *.sitemap.dolarbebe.com *.sitemaps.dolarbebe.com
innovantmuebles.com *.innovantmuebles.com *.ww25.innovantmuebles.com
*.beta.jotfirm.com *.eu.jotfirm.com *.form.jotfirm.com jotfirm.com *.jotfirm.com *.ww25.jotfirm.com
kush.studio *.kush.studio
*.admin.massrobotic.com *.api.massrobotic.com *.app.massrobotic.com *.backup.massrobotic.com *.demo.massrobotic.com *.dev.massrobotic.com *.mail.massrobotic.com *.mailer.massrobotic.com *.marketing.massrobotic.com massrobotic.com *.massrobotic.com *.qa.massrobotic.com *.secure.massrobotic.com *.staging.massrobotic.com *.stg.massrobotic.com *.uat.massrobotic.com *.v1.massrobotic.com *.vpn.massrobotic.com *.web.massrobotic.com
*.mail.motogear.it motogear.it *.motogear.it
*.git.onlinefitnesscoaching.co *.hostmaster.onlinefitnesscoaching.co *.m.onlinefitnesscoaching.co onlinefitnesscoaching.co *.onlinefitnesscoaching.co *.wildcard.onlinefitnesscoaching.co *.ww1.onlinefitnesscoaching.co *.www1.onlinefitnesscoaching.co
*.img1-fg.payie.com payie.com *.payie.com *.ww16.payie.com
pornfree.bet *.pornfree.bet *.vid-3.pornfree.bet *.vid-4.pornfree.bet *.vid-6.pornfree.bet
*.autodiscover.prog.life *.img.prog.life *.kb.prog.life prog.life *.prog.life *.s.prog.life *.test.prog.life
*.app.startmyfit.com startmyfit.com *.startmyfit.com *.ww38.startmyfit.com
virtualtelemetry.com *.virtualtelemetry.com *.ww25.virtualtelemetry.com
wearther.co *.wearther.co