Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fashiontour.net
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0F:BE:EA:71:35:87:59:92:B7:F7:42:67:9E:DD:DA:B5:AA:3C:CB:DF:31:79:2D:56:61:A7:98:74:1A:42:91:C5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
freefile4h.pro
*.freefile4h.pro
*.dev.freefile4h.pro
*.testing.freefile4h.pro
123movieshd.co
*.123movieshd.co
*.hostmaster.123movieshd.co
*.ww25.123movieshd.co
aoki-kenchiku.net
*.aoki-kenchiku.net
*.ofertas-trabajo.aoki-kenchiku.net
*.shrd.aoki-kenchiku.net
curetechbd.com
*.curetechbd.com
*.tm.curetechbd.com
*.tmtest.curetechbd.com
donghohungwatch.click
*.donghohungwatch.click
*.ww25.donghohungwatch.click
*.autodiscover.durapik.co
durapik.co
*.durapik.co
*.www.durapik.co
*.admin.fashiontour.net
*.app.fashiontour.net
*.backend.fashiontour.net
*.blog.fashiontour.net
*.cloud.fashiontour.net
fashiontour.net
*.fashiontour.net
*.hostmaster.fashiontour.net
*.mta-sts.fashiontour.net
*.neu.fashiontour.net
*.nieuw.fashiontour.net
*.rd.fashiontour.net
*.rdg.fashiontour.net
*.rds.fashiontour.net
*.remote.fashiontour.net
*.smtp.fashiontour.net
*.smtpauth.fashiontour.net
*.test.fashiontour.net
*.wildcard.fashiontour.net
freeaboo.net
*.freeaboo.net
*.ww25.freeaboo.net
*.ww38.freeaboo.net
*.hostmaster.jackpot.ws
jackpot.ws
*.jackpot.ws
*.m.jackpot.ws
*.dashboard.mechatronic.it
*.hostmaster.mechatronic.it
mechatronic.it
*.mechatronic.it
*.reports.mechatronic.it
*.www.mechatronic.it
*.hostmaster.mrfinance.co
mrfinance.co
*.mrfinance.co
*.demo.pedicare.co
pedicare.co
*.pedicare.co
*.801602.phmines4416.com
phmines4416.com
*.phmines4416.com
rjjlg.icu
*.rjjlg.icu
*.xn--d5qv52kvyl9ra.rjjlg.icu
*.0afmf.s5pr84cm9x.xyz
*.5qutp.s5pr84cm9x.xyz
*.78z68.s5pr84cm9x.xyz
*.cnfr9.s5pr84cm9x.xyz
*.ebwif.s5pr84cm9x.xyz
*.niw2v.s5pr84cm9x.xyz
*.osc36.s5pr84cm9x.xyz
s5pr84cm9x.xyz
*.s5pr84cm9x.xyz
*.snx68.s5pr84cm9x.xyz
*.z4gbs.s5pr84cm9x.xyz
sportmix.co
*.sportmix.co
*.aldridgeaccountants.voiceso.com
voiceso.com
*.voiceso.com
*.var10.xgamex5.cc
*.var19.xgamex5.cc
*.var20.xgamex5.cc
*.var9.xgamex5.cc
xgamex5.cc
*.xgamex5.cc
Other domains in certificate