Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=quantum.creditcard
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 01, 2026
Valid Until
July 30, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5B:20:F1:A4:E6:1B:11:19:C7:9E:33:A5:DF:22:A2:89:75:06:72:42:D1:E1:FB:4E:76:E0:9B:35:0B:86:FE:82
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
newtour.it
*.newtour.it
*.admin.newtour.it
*.app.newtour.it
*.demo.newtour.it
*.dev.newtour.it
*.hostmaster.newtour.it
*.insight.newtour.it
*.intelligence.newtour.it
*.reports.newtour.it
*.stats.newtour.it
*.superset.newtour.it
*.supersets.newtour.it
allaiterauquebec.org
*.allaiterauquebec.org
*.bibliothequevirtuelle.allaiterauquebec.org
*.cpcalendars.allaiterauquebec.org
*.dev.allaiterauquebec.org
*.ifq.allaiterauquebec.org
*.infactquebec.allaiterauquebec.org
*.mail3.allaiterauquebec.org
*.mouvementallaitement.allaiterauquebec.org
*.quierocomprarunhibridodev.allaiterauquebec.org
*.app.blossomoutlet.com
*.bamb.blossomoutlet.com
blossomoutlet.com
*.blossomoutlet.com
*.de3fda5e-2427-4f9b-8b28-6793f80ed533.blossomoutlet.com
*.dev.blossomoutlet.com
*.hyrueowa.blossomoutlet.com
*.m.blossomoutlet.com
*.members.blossomoutlet.com
*.owa.blossomoutlet.com
*.rd.blossomoutlet.com
*.rds.blossomoutlet.com
*.test.blossomoutlet.com
buyoshenwatch.com
*.buyoshenwatch.com
*.paulsantosh-testblog.buyoshenwatch.com
*.ww12.buyoshenwatch.com
*.1yme1.f3sz6urapa.xyz
f3sz6urapa.xyz
*.f3sz6urapa.xyz
*.kac0t.f3sz6urapa.xyz
*.kp5po.f3sz6urapa.xyz
*.kwid9.f3sz6urapa.xyz
*.niw2v.f3sz6urapa.xyz
*.nslow.f3sz6urapa.xyz
*.ftp.incorporation.tv
incorporation.tv
*.incorporation.tv
*.webmail.incorporation.tv
lenstogo.com
*.lenstogo.com
*.1130dbc6-f8be-4c1f-9bde-66f16eab1e31.ludo24.live
*.app.ludo24.live
*.dev.ludo24.live
*.ivikum.ludo24.live
ludo24.live
*.ludo24.live
*.members.ludo24.live
*.m.marianas.org
marianas.org
*.marianas.org
positivityacademy.click
*.positivityacademy.click
*.admin.quantum.creditcard
*.api.quantum.creditcard
*.app.quantum.creditcard
*.ctnozassets.quantum.creditcard
*.dan.quantum.creditcard
*.demo.quantum.creditcard
*.dev.quantum.creditcard
*.e6df92ac-e78c-41b0-b261-8c30fdfaa31b.quantum.creditcard
*.img.quantum.creditcard
quantum.creditcard
*.quantum.creditcard
*.shop.quantum.creditcard
*.test.quantum.creditcard
*.wildcard.quantum.creditcard
*.www.quantum.creditcard
*.m.sec.money
sec.money
*.sec.money
*.sitemap.sec.money
*.demo.xn--satlklksvillalar-ozb46gba.com
*.desktop.xn--satlklksvillalar-ozb46gba.com
*.members.xn--satlklksvillalar-ozb46gba.com
xn--satlklksvillalar-ozb46gba.com
*.xn--satlklksvillalar-ozb46gba.com
Other domains in certificate