Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=profcon.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 21, 2026
Valid Until
July 20, 2026
37 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:40:D8:9E:10:12:A4:AE:95:A3:7D:E7:F4:9C:A9:18:89:2B:9C:61:7B:3A:E0:53:D8:4A:92:9F:FE:9C:36:BF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
parents24.de
*.parents24.de
*.admin.parents24.de
*.api.parents24.de
*.assets.parents24.de
*.bk.parents24.de
*.demo.parents24.de
*.dev.parents24.de
*.mail.parents24.de
*.whm.parents24.de
984476.lol
*.984476.lol
*.rustore.984476.lol
alyamama-eng.info
*.alyamama-eng.info
cattracker.co.uk
*.cattracker.co.uk
*.autodiscover.comefaresitoweb.it
comefaresitoweb.it
*.comefaresitoweb.it
*.cpanel.comefaresitoweb.it
*.hostmaster.comefaresitoweb.it
*.mail.comefaresitoweb.it
*.webdisk.comefaresitoweb.it
*.webmail.comefaresitoweb.it
discountservers.co.uk
*.discountservers.co.uk
*.desktop.fritzi.com
*.forum.fritzi.com
fritzi.com
*.fritzi.com
*.gateway.fritzi.com
*.hcp.fritzi.com
*.missisandmister.fritzi.com
*.office.fritzi.com
*.remote.fritzi.com
*.sslvpn3.fritzi.com
*.webelektronikafikra.fritzi.com
*.ww25.fritzi.com
*.cpcalendars.herewearea.live
*.cpcontacts.herewearea.live
herewearea.live
*.herewearea.live
*.liveww.herewearea.live
*.liveww25.herewearea.live
*.mail.herewearea.live
*.webmail.herewearea.live
*.ww38.herewearea.live
*.www.herewearea.live
*.co.j89e32u.com
j89e32u.com
*.j89e32u.com
*.admin.passiavanti.it
*.backend.passiavanti.it
*.dev.passiavanti.it
passiavanti.it
*.passiavanti.it
*.1507298b-4e14-4b93-8e0d-0a36f6b1aaae.privatepropert.co.za
*.admin.privatepropert.co.za
*.bachp25.privatepropert.co.za
*.myprofile.privatepropert.co.za
privatepropert.co.za
*.privatepropert.co.za
*.ww25.privatepropert.co.za
*.app.profcon.live
profcon.live
*.profcon.live
smokeandcured.co.uk
*.smokeandcured.co.uk
teenchat.uk
*.teenchat.uk
*.admin.therap.it
*.analytics.therap.it
*.api.therap.it
*.backend.therap.it
*.bi.therap.it
*.chart.therap.it
*.ci.therap.it
*.dash.therap.it
*.dashs.therap.it
*.dev.therap.it
*.redash.therap.it
*.reporting.therap.it
*.staging.therap.it
*.test.therap.it
therap.it
*.therap.it
*.5176f999.xup7kb3.top
xup7kb3.top
*.xup7kb3.top
Other domains in certificate