Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=craftovibe.shop
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 07, 2026
Valid Until
September 05, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
01:56:A4:63:E3:14:4E:63:E1:97:34:36:65:08:A1:C1:51:84:6D:87:F9:A8:02:0D:AE:0B:B0:AA:07:5F:26:DA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
vavadars21.com
*.vavadars21.com
483366.vip
*.483366.vip
483407.vip
*.483407.vip
bxf775s.top
*.bxf775s.top
choosejplaw.info
*.choosejplaw.info
craftovibe.shop
*.craftovibe.shop
dbp9.top
*.dbp9.top
echargeup.autos
*.echargeup.autos
eibar.cc
*.eibar.cc
everlastingunionevents.beauty
*.everlastingunionevents.beauty
exclusivcloset.com
*.exclusivcloset.com
homecraftedimprovements.com
*.homecraftedimprovements.com
hoodieallentickets.com
*.hoodieallentickets.com
inspirecareerpave.qpon
*.inspirecareerpave.qpon
interproxy.tech
*.interproxy.tech
irsfundsverification.com
*.irsfundsverification.com
kesi.live
*.kesi.live
klaviyoflowsai.xyz
*.klaviyoflowsai.xyz
lawsontreeservice.co
*.lawsontreeservice.co
*.comune.lucypetcarer.co.uk
lucypetcarer.co.uk
*.lucypetcarer.co.uk
mantasticzone.xyz
*.mantasticzone.xyz
mylikebooks.cyou
*.mylikebooks.cyou
nexvireongr.works
*.nexvireongr.works
nurturebush.qpon
*.nurturebush.qpon
panelexpres.com
*.panelexpres.com
peraplay1.xyz
*.peraplay1.xyz
propertyfund.icu
*.propertyfund.icu
pxwvzr8km3uqybntelod.top
*.pxwvzr8km3uqybntelod.top
qenvdh.cc
*.qenvdh.cc
radiantweddingrites.beauty
*.radiantweddingrites.beauty
sajhabajaar.com
*.sajhabajaar.com
shdhl88.com
*.shdhl88.com
simontrading.com
*.simontrading.com
smarthomerevamp.com
*.smarthomerevamp.com
smartmef.com
*.smartmef.com
sv368-vn.cfd
*.sv368-vn.cfd
talkhealthy.org
*.talkhealthy.org
*.m.titantwenty.com
titantwenty.com
*.titantwenty.com
trusttravelsphere.qpon
*.trusttravelsphere.qpon
unefuyo.info
*.unefuyo.info
weggies.com
*.weggies.com
www36848.com
*.www36848.com
wwwtp91.cc
*.wwwtp91.cc
zenithweddingplanners.beauty
*.zenithweddingplanners.beauty
Other domains in certificate