Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=brightlinkmedia.sbs
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 02, 2026
Valid Until
July 31, 2026
58 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
59:DF:AA:9B:D0:0C:52:E8:3C:DE:00:95:DD:38:9F:2B:D5:0A:69:30:B0:E9:67:FE:A9:23:78:EE:1F:B9:65:8E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
desy.live
*.desy.live
bilgiavcisi.info
*.bilgiavcisi.info
brightlinkmedia.sbs
*.brightlinkmedia.sbs
brightweddingplan.beauty
*.brightweddingplan.beauty
cashdial.com
*.cashdial.com
cscdriveezmd.com
*.cscdriveezmd.com
d3ulpc5.cc
*.d3ulpc5.cc
nexus-terrawave.quest
*.nexus-terrawave.quest
ondograph.com
*.ondograph.com
p3cm6c35qd.world
*.p3cm6c35qd.world
powerwizard38.info
*.powerwizard38.info
rapid-cosmicforge.quest
*.rapid-cosmicforge.quest
responsiblewanderways.xyz
*.responsiblewanderways.xyz
rsw88.icu
*.rsw88.icu
securetravelsphere.xyz
*.securetravelsphere.xyz
theexit.work
*.theexit.work
thetalentjetgroup.com
*.thetalentjetgroup.com
thevestusstudio.info
*.thevestusstudio.info
thinkexit.business
*.thinkexit.business
titanninja441.shop
*.titanninja441.shop
tkbitw.com
*.tkbitw.com
tkdccb.com
*.tkdccb.com
tkrwyy.com
*.tkrwyy.com
tlj57vi.top
*.tlj57vi.top
totalnarozrywk.it.com
*.totalnarozrywk.it.com
tow-trucks-vo.click
*.tow-trucks-vo.click
traveltimely.xyz
*.traveltimely.xyz
traveltrektrust.xyz
*.traveltrektrust.xyz
travelwisdomhub.xyz
*.travelwisdomhub.xyz
trialvm.com
*.trialvm.com
ukazxf.com
*.ukazxf.com
ultflex.com
*.ultflex.com
uranoz.com
*.uranoz.com
usegershonconsulting.com
*.usegershonconsulting.com
v88av3145.xyz
*.v88av3145.xyz
vale-industry.info
*.vale-industry.info
weddingassertion.beauty
*.weddingassertion.beauty
weddingjewel.beauty
*.weddingjewel.beauty
weddingmomentumpro.beauty
*.weddingmomentumpro.beauty
weddingprevail.beauty
*.weddingprevail.beauty
weddingwisdomexperts.beauty
*.weddingwisdomexperts.beauty
wedtrustadvisors.beauty
*.wedtrustadvisors.beauty
wqlyy.top
*.wqlyy.top
xbsxwv.club
*.xbsxwv.club
xingyunqipai.net
*.xingyunqipai.net
Other domains in certificate