Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=goggleair.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 14, 2026
Valid Until
May 15, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C8:46:83:34:A8:8D:85:C3:16:9D:98:00:CA:1E:90:1D:9E:06:60:B8:7B:70:22:3C:3B:DE:D3:F7:2D:D1:01:72
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
com0.com.br
*.com0.com.br
4box.xyz
*.4box.xyz
adidasfutbol.com
*.adidasfutbol.com
*.random.adidasfutbol.com
baldwin-irrigation-and-landscape.org
*.baldwin-irrigation-and-landscape.org
benughty.com
*.benughty.com
*.preview.benughty.com
builderswarehousemelbourne.com.au
*.builderswarehousemelbourne.com.au
*.ww38.builderswarehousemelbourne.com.au
carea.biz
*.carea.biz
cubexmail.com
*.cubexmail.com
*.ww25.cubexmail.com
ezc.com.au
*.ezc.com.au
*.ww38.ezc.com.au
fr44florida.com
*.fr44florida.com
goggleair.com
*.goggleair.com
gourmetlodges.com
*.gourmetlodges.com
highclassnudes.com
*.highclassnudes.com
*.ww25.highclassnudes.com
inboxescape.com
*.inboxescape.com
*.ww25.inboxescape.com
inkipixi.com
*.inkipixi.com
*.ww38.inkipixi.com
intuition-eunetwork.org
*.intuition-eunetwork.org
jandmlandscapingmi.com
*.jandmlandscapingmi.com
juegojuegos.es
*.juegojuegos.es
mites.com.au
*.mites.com.au
*.random.mites.com.au
*.ww38.mites.com.au
*.confirmed.mogsonline.com
*.members.mogsonline.com
mogsonline.com
*.mogsonline.com
*.sales.mogsonline.com
*.test-uat1.mogsonline.com
officelibre.org
*.officelibre.org
osteriamejadgnint.com
*.osteriamejadgnint.com
*.ww38.osteriamejadgnint.com
parttimeemployment.au
*.parttimeemployment.au
pavelrekun.dev
*.pavelrekun.dev
*.ww16.pavelrekun.dev
potteryban.com
*.potteryban.com
*.qa24.potteryban.com
*.qa54.potteryban.com
*.uat3.potteryban.com
*.ww.potteryban.com
privatetests.com.au
*.privatetests.com.au
*.ww38.privatetests.com.au
sharemates.au
*.sharemates.au
sjjdavidsen.de
*.sjjdavidsen.de
*.preview.thecrackstream.com
thecrackstream.com
*.thecrackstream.com
*.ww25.thecrackstream.com
*.ww38.thecrackstream.com
tropicalsurfing.com
*.tropicalsurfing.com
wati9ati.xyz
*.wati9ati.xyz
*.ww25.wati9ati.xyz
western-h20.com
*.western-h20.com
Other domains in certificate