Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=carverts.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 15, 2026
Valid Until
August 13, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
94:95:E9:4A:23:6D:1D:A1:1F:4B:FC:73:D7:11:11:4D:63:82:DE:87:28:35:3A:6E:B3:4C:03:B3:58:5B:88:FB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
survfight.com
*.survfight.com
*.app.survfight.com
*.dev.survfight.com
*.intranet.survfight.com
*.my.survfight.com
*.public.survfight.com
*.sharepoint.survfight.com
024.co.uk
*.024.co.uk
119joycasino.xyz
*.119joycasino.xyz
60147.pro
*.60147.pro
a2asquaredrentals.com
*.a2asquaredrentals.com
acidcip.com
*.acidcip.com
agapeoffice.com.br
*.agapeoffice.com.br
*.mail.agapeoffice.com.br
article-blog-check.com
*.article-blog-check.com
carverts.com
*.carverts.com
*.hostmaster.carverts.com
*.mail.carverts.com
*.random.carverts.com
*.www.carverts.com
chestnut.co.uk
*.chestnut.co.uk
chutneys.co.uk
*.chutneys.co.uk
cleanly.co.uk
*.cleanly.co.uk
dialamobile.co.uk
*.dialamobile.co.uk
didgeridoo.uk
*.didgeridoo.uk
dinnerparty.uk
*.dinnerparty.uk
*.bkpmy.fault3.com
fault3.com
*.fault3.com
*.ww16.fault3.com
femaleauthors.xyz
*.femaleauthors.xyz
*.kwid9.femaleauthors.xyz
fireell.tech
*.fireell.tech
fr2b23.top
*.fr2b23.top
game-pc-21.sbs
*.game-pc-21.sbs
hannahs.co
*.hannahs.co
hotel-order-management-system-3.sbs
*.hotel-order-management-system-3.sbs
jackpointoyster.com
*.jackpointoyster.com
jobsworkers-restaurant-workers-needs967.sbs
*.jobsworkers-restaurant-workers-needs967.sbs
kucreativezone.com
*.kucreativezone.com
*.28503b2f-32fa-4b06-ad14-e8c220a6f2ee.laserpartsmarket.com
*.api.laserpartsmarket.com
*.app.laserpartsmarket.com
*.assets.laserpartsmarket.com
*.cabinet.laserpartsmarket.com
*.demo.laserpartsmarket.com
*.dev.laserpartsmarket.com
*.f1db0n.laserpartsmarket.com
laserpartsmarket.com
*.laserpartsmarket.com
*.portal.laserpartsmarket.com
planetgolf.co.uk
*.planetgolf.co.uk
*.random.shoulderpads.com.au
shoulderpads.com.au
*.shoulderpads.com.au
*.m.solidarityclub.com
solidarityclub.com
*.solidarityclub.com
tallasgrandes.es
*.tallasgrandes.es
*.ww25.tallasgrandes.es
*.ww38.tallasgrandes.es
*.aofoms.tsl.de
tsl.de
*.tsl.de
Other domains in certificate