Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ssta08.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
60:8D:4E:AE:FA:65:6C:5B:71:AE:45:EA:9C:8E:E9:97:B9:4F:7D:F5:1B:CE:BD:4A:6C:51:5B:26:10:21:52:E3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
copycatteam.com
*.copycatteam.com
cpdpb.gdn
*.cpdpb.gdn
cvruo.sbs
*.cvruo.sbs
dandefoods.com
*.dandefoods.com
dantapiero.com
*.dantapiero.com
dayimedya.com
*.dayimedya.com
erk2mty.cc
*.erk2mty.cc
eu-ivy.art
*.eu-ivy.art
frovix.info
*.frovix.info
getcopycatink.com
*.getcopycatink.com
gohealth-fairs.com
*.gohealth-fairs.com
gotradethedip.info
*.gotradethedip.info
greengas.ae
*.greengas.ae
hicopycatink.com
*.hicopycatink.com
immediate-derom30.com
*.immediate-derom30.com
javitsonthehudson.com
*.javitsonthehudson.com
jinzj.com.cn
*.jinzj.com.cn
joingreentechrenewables.com
*.joingreentechrenewables.com
kazimanigeria.com
*.kazimanigeria.com
noblecorpukdiv.info
*.noblecorpukdiv.info
odido.net
*.odido.net
online-loans-choices-478.sbs
*.online-loans-choices-478.sbs
ordernanysauthenicmexicanandpupuseria.com
*.ordernanysauthenicmexicanandpupuseria.com
painting-jobs-48749.sbs
*.painting-jobs-48749.sbs
pixio.win
*.pixio.win
profeworld.com
*.profeworld.com
promptodesign.com
*.promptodesign.com
puffstobaccos.com
*.puffstobaccos.com
rafiinternational.com
*.rafiinternational.com
recuperaforex.com
*.recuperaforex.com
rosile.pro
*.rosile.pro
rudiple.com
*.rudiple.com
saratogacare.com
*.saratogacare.com
schmitt.dev
*.schmitt.dev
seltec.co
*.seltec.co
shamvu.com
*.shamvu.com
signlove.com
*.signlove.com
siphon-fx.com
*.siphon-fx.com
ssta08.co
*.ssta08.co
ssuioc.cn
*.ssuioc.cn
thepeoplespantry.org
*.thepeoplespantry.org
tk888.help
*.tk888.help
tongva.art
*.tongva.art
tuhawy.pro
*.tuhawy.pro
umbrella.asia
*.umbrella.asia
Other domains in certificate