Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=2pac.life
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 05, 2026
Valid Until
August 03, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
74:8B:E4:0B:C9:17:74:C1:01:14:AB:08:C0:44:0B:3C:BF:5D:1F:62:A4:0C:62:AB:2C:48:07:D8:8A:DB:9B:AD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
72 domains
heat4less.com
*.heat4less.com
*.control.heat4less.com
*.directory.heat4less.com
*.old.heat4less.com
*.seo.heat4less.com
*.test.heat4less.com
*.tour.heat4less.com
2pac.life
*.2pac.life
*.ww38.2pac.life
anchz.com
*.anchz.com
*.img1-fg.anchz.com
berkeleycleaners.net
*.berkeleycleaners.net
commuting.com.au
*.commuting.com.au
*.app.finanziamentiartigiani.com
*.dev.finanziamentiartigiani.com
finanziamentiartigiani.com
*.finanziamentiartigiani.com
*.ww20.finanziamentiartigiani.com
*.beta.fist-art.com
fist-art.com
*.fist-art.com
*.members.fist-art.com
*.random.fist-art.com
*.superset.fist-art.com
*.ww.fist-art.com
*.ww16.fist-art.com
musastj.com
*.musastj.com
*.ww16.musastj.com
*.ww25.musastj.com
nalendra-hotel.net
*.nalendra-hotel.net
*.ww25.nalendra-hotel.net
*.ww38.nalendra-hotel.net
*.mail.pizzatown-histon.co.uk
pizzatown-histon.co.uk
*.pizzatown-histon.co.uk
*.www.pizzatown-histon.co.uk
politio.eu
*.politio.eu
*.files.potatophant.net
*.magnifier.potatophant.net
potatophant.net
*.potatophant.net
*.www.potatophant.net
secondhandscience.co.uk
*.secondhandscience.co.uk
*.0x2mx135lsuh15bl.shutterrstock.com
shutterrstock.com
*.shutterrstock.com
*.store.shutterrstock.com
*.sumit.shutterrstock.com
*.ww38.shutterrstock.com
thefabricofreality.space
*.thefabricofreality.space
*.zbylby7dtm.thefabricofreality.space
thehancocknyc.com
*.thehancocknyc.com
*.ww17.thehancocknyc.com
*.ww25.thehancocknyc.com
*.cpcontacts.worms.live
*.do.worms.live
*.donhammerhead.worms.live
worms.live
*.worms.live
yesworld.live
*.yesworld.live
Other domains in certificate