Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=javea.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
27:C6:6A:82:96:3E:EA:AC:42:F6:76:87:0F:D9:BB:D4:29:74:21:56:50:2C:CC:61:5A:59:98:36:05:41:33:65
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
jun4u.com
*.jun4u.com
cmastarawards.com
*.cmastarawards.com
collaboratehub.lat
*.collaboratehub.lat
copy-center.it
*.copy-center.it
coriolanus.it
*.coriolanus.it
deepai.us
*.deepai.us
dengxia.com
*.dengxia.com
directsearch.it
*.directsearch.it
door-refrigerator-515479611.click
*.door-refrigerator-515479611.click
eachdays.com
*.eachdays.com
eliteagency.us
*.eliteagency.us
elms.it
*.elms.it
extracts.it
*.extracts.it
financeering.com
*.financeering.com
javea.co
*.javea.co
jesusgod.it
*.jesusgod.it
jolnax.com
*.jolnax.com
jolnip.com
*.jolnip.com
jqqev.pro
*.jqqev.pro
k12wy.us
*.k12wy.us
kanataguatemalan.com
*.kanataguatemalan.com
kijdw.pro
*.kijdw.pro
klopper.it
*.klopper.it
laltrasicilia.it
*.laltrasicilia.it
lamesotheliomaattorneys.com
*.lamesotheliomaattorneys.com
lapala.it
*.lapala.it
lebloc.it
*.lebloc.it
liofeve.com
*.liofeve.com
losangelesaccidentinjury.com
*.losangelesaccidentinjury.com
luxuryhotelroomfinder.com
*.luxuryhotelroomfinder.com
womansnetwork.it
*.womansnetwork.it
woolsuit.it
*.woolsuit.it
worktohelp.it
*.worktohelp.it
xn--vpn-f78ft84p.xyz
*.xn--vpn-f78ft84p.xyz
xn--zss022a.com
*.xn--zss022a.com
xsfxh.bid
*.xsfxh.bid
yoro.it
*.yoro.it
youaskfor.it
*.youaskfor.it
youthink.it
*.youthink.it
z13pjpm9.top
*.z13pjpm9.top
zdghw.gdn
*.zdghw.gdn
zianslot888auto.org
*.zianslot888auto.org
zonacentro.it
*.zonacentro.it
zoran.it
*.zoran.it
zuhause.it
*.zuhause.it
Other domains in certificate