Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pastorgrace.us
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 30, 2026
Valid Until
June 28, 2026
36 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:DD:35:17:34:51:00:A6:F3:3D:98:89:DB:95:D6:85:EC:71:58:AD:E8:A4:6F:F4:40:44:63:F2:53:4F:EB:4E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
merreell.com
*.merreell.com
*.ci.merreell.com
*.development.merreell.com
*.poc.merreell.com
*.preprod.merreell.com
*.ww25.merreell.com
adstikung.online
*.adstikung.online
*.abd.ajduesbc.cc
ajduesbc.cc
*.ajduesbc.cc
*.sitemap.ajduesbc.cc
*.sitemaps.ajduesbc.cc
*.test.ajduesbc.cc
artifara.com
*.artifara.com
*.webmail.artifara.com
*.ww38.artifara.com
*.analytic.besttruckinbbq.com
besttruckinbbq.com
*.besttruckinbbq.com
*.portfolio.besttruckinbbq.com
*.thecravebar.besttruckinbbq.com
*.toastycheese.besttruckinbbq.com
*.ww16.besttruckinbbq.com
*.ww38.besttruckinbbq.com
*.bbs.comportamentos.com
*.billing.comportamentos.com
comportamentos.com
*.comportamentos.com
*.cpanel.comportamentos.com
*.e.comportamentos.com
*.files.comportamentos.com
*.helpdesk.comportamentos.com
*.mx.comportamentos.com
*.web.comportamentos.com
*.xxx.comportamentos.com
*.zmc.comportamentos.com
convoytruck.com
*.convoytruck.com
*.0541665f-4799-4fbf-aa46-3ff2b7157b09.fatimazes.com
*.074ff1b1-0602-498f-bd64-0d2d12e611cd.fatimazes.com
*.09ba056d-08a3-497a-9643-b448eee3aba7.fatimazes.com
*.435ede28-4b67-49c6-99bf-37a559ec6d1b.fatimazes.com
*.85e37da5-2a6c-46c2-8122-0acb3f800242.fatimazes.com
*.assets.fatimazes.com
*.blog.fatimazes.com
*.dev.fatimazes.com
fatimazes.com
*.fatimazes.com
*.hostmaster.fatimazes.com
*.summary.fatimazes.com
*.vpn.fatimazes.com
*.www.fatimazes.com
gnes.com
*.gnes.com
*.mail.gnes.com
*.talents-accompa.gnes.com
*.ww25.gnes.com
*.ww38.gnes.com
*.api.lanzhou.it
*.backend.lanzhou.it
*.demo.lanzhou.it
*.hostmaster.lanzhou.it
lanzhou.it
*.lanzhou.it
*.cpcontacts.pastorgrace.us
pastorgrace.us
*.pastorgrace.us
*.webdisk.pastorgrace.us
*.webmail.pastorgrace.us
stavki-na-cybersport.club
*.stavki-na-cybersport.club
*.ww25.stavki-na-cybersport.club
*.eu3rm.tgrtstrategy.xyz
tgrtstrategy.xyz
*.tgrtstrategy.xyz
*.zruod.tgrtstrategy.xyz
thebestjob.it
*.thebestjob.it
toclub.it
*.toclub.it
tripsuissealpine.com
*.tripsuissealpine.com
*.www.tripsuissealpine.com
vinagreta.it
*.vinagreta.it
vivamilano.it
*.vivamilano.it
Other domains in certificate