Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=haslington.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 11, 2026
Valid Until
April 11, 2026
55 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
48:51:42:2F:60:83:7C:AF:48:9A:E1:C4:70:7D:ED:C6:67:79:15:74:3D:27:AE:E3:57:22:A9:9C:61:A4:C8:C9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
boohoobump.com
*.boohoobump.com
*.admin.boohoobump.com
*.app.boohoobump.com
*.dev.boohoobump.com
*.directory.boohoobump.com
*.es.boohoobump.com
*.film.boohoobump.com
*.jobs.boohoobump.com
*.mailout.boohoobump.com
*.ns.boohoobump.com
*.ns2.boohoobump.com
*.pop3.boohoobump.com
*.random.boohoobump.com
*.show.boohoobump.com
*.smtp.boohoobump.com
*.spain.boohoobump.com
*.spam.boohoobump.com
*.srv4.boohoobump.com
ajm.world
*.ajm.world
*.host3.ajm.world
*.www.ajm.world
b8.au
*.b8.au
*.ra.b8.au
*.superset-production.b8.au
coloring.in
*.coloring.in
*.for.coloring.in
cosvalve.net
*.cosvalve.net
*.www.cosvalve.net
dekraempleo.es
*.dekraempleo.es
*.ww16.dekraempleo.es
*.ww17.dekraempleo.es
*.ww25.dekraempleo.es
haslington.org
*.haslington.org
*.ww25.haslington.org
keypla.net
*.keypla.net
kish.life
*.kish.life
*.pay.kish.life
*.co.koome.co
koome.co
*.koome.co
lhm.us
*.lhm.us
*.mx1.lhm.us
*.random.lhm.us
maa.bio
*.maa.bio
providencepatients.com
*.providencepatients.com
*.random.rocksales.com.au
rocksales.com.au
*.rocksales.com.au
*.037.rph867.top
*.13.rph867.top
*.23.rph867.top
*.36.rph867.top
*.42.rph867.top
*.58.rph867.top
*.580.rph867.top
*.91.rph867.top
*.a37.rph867.top
*.b0.rph867.top
*.h20.rph867.top
*.k17.rph867.top
*.m8.rph867.top
rph867.top
*.rph867.top
*.s97.rph867.top
siammilsim.com
*.siammilsim.com
*.smkxxy.siammilsim.com
sustainablebuilding.com.au
*.sustainablebuilding.com.au
*.ww38.sustainablebuilding.com.au
usrepair.co
*.usrepair.co
*.ww38.usrepair.co
*.fotohive.wildlifephotographyexperiences.com
wildlifephotographyexperiences.com
*.wildlifephotographyexperiences.com
*.ww16.wildlifephotographyexperiences.com
Other domains in certificate