Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=boldborderstravel.live
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 01, 2026
Valid Until
August 30, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4F:EC:53:BA:CA:7C:4F:92:FB:A9:07:64:E7:99:68:01:5F:7A:5D:E9:CE:48:52:9D:43:14:56:7D:D9:CE:E8:94
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
bridalshow.in
*.bridalshow.in
boldborderstravel.live
*.boldborderstravel.live
brainorbital.info
*.brainorbital.info
brian.network
*.brian.network
btcbul.tax
*.btcbul.tax
c9z2mg7w9.top
*.c9z2mg7w9.top
careerbeaconguide.live
*.careerbeaconguide.live
careerempowermenthub.live
*.careerempowermenthub.live
careerendeavorpro.live
*.careerendeavorpro.live
careerenhancementlab.live
*.careerenhancementlab.live
careerlegacybuilders.live
*.careerlegacybuilders.live
careeropportunitypath.live
*.careeropportunitypath.live
careerpathfocus.live
*.careerpathfocus.live
careerpioneers.live
*.careerpioneers.live
careerprinciples.live
*.careerprinciples.live
careerpromisepro.live
*.careerpromisepro.live
careerprosperityplan.live
*.careerprosperityplan.live
careersuccessroutes.live
*.careersuccessroutes.live
careervirtue.live
*.careervirtue.live
cashloanflow.com
*.cashloanflow.com
casinonetbet-de.com
*.casinonetbet-de.com
cherryhaus.com
*.cherryhaus.com
commandpiesolutions.info
*.commandpiesolutions.info
createpiesolutions.info
*.createpiesolutions.info
*.nk50uh.createpiesolutions.info
damac360.com
*.damac360.com
daxonbrite.info
*.daxonbrite.info
dealornodeal.guru
*.dealornodeal.guru
destinationdirect.live
*.destinationdirect.live
destinationdominance.live
*.destinationdominance.live
dewagacor89info.com
*.dewagacor89info.com
dewagacor89petir.com
*.dewagacor89petir.com
df3f3dde283f7625.com
*.df3f3dde283f7625.com
dfhgfngf.top
*.dfhgfngf.top
diybuildvalue.live
*.diybuildvalue.live
diydesignerpros.live
*.diydesignerpros.live
diyprecisionplans.live
*.diyprecisionplans.live
domug.gdn
*.domug.gdn
doublecasino-hu.com
*.doublecasino-hu.com
ds10035.cc
*.ds10035.cc
ds60020.cc
*.ds60020.cc
ecksofaaufraten.sbs
*.ecksofaaufraten.sbs
elginvalleyfoxtrot.com
*.elginvalleyfoxtrot.com
epuzm.cn
*.epuzm.cn
erenvironmental.com
*.erenvironmental.com
Other domains in certificate