Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fashioncorner.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 24, 2026
Valid Until
August 22, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EA:09:6E:31:B1:0E:43:5D:36:41:64:6C:E7:AF:2E:A1:85:A5:4C:DD:80:4B:40:8E:74:5E:B1:4B:EF:3F:AD:BC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
547878.vip
*.547878.vip
*.2995d7a8-0e8c-4650-97e4-d64f32357cf0.547878.vip
*.5zzac5.547878.vip
*.api.547878.vip
*.backup.547878.vip
*.dashboard.547878.vip
*.dev.547878.vip
*.external.547878.vip
*.hr.547878.vip
*.intranet.547878.vip
*.j473xx.547878.vip
*.mail.547878.vip
*.mailer.547878.vip
*.napdjj473xx.547878.vip
*.new.547878.vip
*.public.547878.vip
*.sharepoint.547878.vip
*.v2.547878.vip
*.www.547878.vip
3-6-9watch.com
*.3-6-9watch.com
*.m.3-6-9watch.com
*.dev.fashioncorner.live
fashioncorner.live
*.fashioncorner.live
*.5rb1kz.gcconlineshop.store
*.6b433903-239b-4606-a48c-5c8ad6bdcf95.gcconlineshop.store
*.admin.gcconlineshop.store
*.api.gcconlineshop.store
*.assets.gcconlineshop.store
*.demo.gcconlineshop.store
gcconlineshop.store
*.gcconlineshop.store
*.test.gcconlineshop.store
*.autodiscover.iweld.net
*.email.iweld.net
*.gateway.iweld.net
iweld.net
*.iweld.net
*.login.iweld.net
*.m.iweld.net
*.office.iweld.net
*.rdp.iweld.net
*.remote.iweld.net
*.remoteaccess.iweld.net
*.sslvpn.iweld.net
*.web.iweld.net
*.werkenbij.iweld.net
*.www.iweld.net
*.24301754-f881-4c67-afe4-2bb1bb7ed6df.juvorio.com
*.api.juvorio.com
*.backup.juvorio.com
*.cc13t4.juvorio.com
*.dev.juvorio.com
juvorio.com
*.juvorio.com
*.members.juvorio.com
*.staging.juvorio.com
*.test.juvorio.com
*.uat.juvorio.com
*.wdsbsmembers.juvorio.com
*.www.juvorio.com
*.demo.kentucky-derby-schedule-hub.site
*.insight.kentucky-derby-schedule-hub.site
*.jenkins.kentucky-derby-schedule-hub.site
kentucky-derby-schedule-hub.site
*.kentucky-derby-schedule-hub.site
*.notexistsapi.kentucky-derby-schedule-hub.site
*.staging.kentucky-derby-schedule-hub.site
*.superset.kentucky-derby-schedule-hub.site
*.uat.kentucky-derby-schedule-hub.site
*.fashion.sh-fz.com
*.m.sh-fz.com
*.news15.sh-fz.com
*.news6.sh-fz.com
sh-fz.com
*.sh-fz.com
thespecialhomestore.online
*.thespecialhomestore.online
*.ww25.thespecialhomestore.online
*.admin.vinceok.com
*.apshengkuo.vinceok.com
*.co.vinceok.com
*.fourbearshideawwebmail.vinceok.com
*.shwww.vinceok.com
vinceok.com
*.vinceok.com
*.wsiconsultoresckuaagny.vinceok.com
*.www.vinceok.com
Other domains in certificate