Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=winderemere.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 04, 2026
Valid Until
August 02, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:29:70:A3:4C:9D:A5:75:69:D0:06:23:29:4A:BD:BF:9B:CB:21:76:5F:C7:E6:4A:BD:B8:79:87:61:95:8E:0C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
winderemere.com
*.winderemere.com
*.edp.winderemere.com
*.glw.winderemere.com
*.mail.winderemere.com
*.marilynfrench.winderemere.com
*.ww17.winderemere.com
*.xl.winderemere.com
beautifulglass.org
*.beautifulglass.org
bloqueinformativo.info
*.bloqueinformativo.info
*.0033de41-b07f-4cdd-9eb6-ef0e14929c91.gacor33c.xyz
*.2dbks.gacor33c.xyz
*.4qwa0.gacor33c.xyz
*.525v4.gacor33c.xyz
*.5qutp.gacor33c.xyz
*.6cd9j.gacor33c.xyz
*.8joac.gacor33c.xyz
*.96c54.gacor33c.xyz
*.a.gacor33c.xyz
*.aowpq.gacor33c.xyz
*.autoconfig.gacor33c.xyz
*.autodiscover.gacor33c.xyz
*.b5hyr.gacor33c.xyz
*.bktlacpcalendars.gacor33c.xyz
*.bnbod.gacor33c.xyz
*.cc2mm.gacor33c.xyz
*.cpcalendars.gacor33c.xyz
*.cpcontacts.gacor33c.xyz
*.cxie3.gacor33c.xyz
*.d.gacor33c.xyz
*.dykcau46cv.gacor33c.xyz
*.emv1.gacor33c.xyz
*.eye.gacor33c.xyz
*.feew6.gacor33c.xyz
*.firewall.gacor33c.xyz
*.ftp.gacor33c.xyz
*.fu1fc.gacor33c.xyz
gacor33c.xyz
*.gacor33c.xyz
*.he00g.gacor33c.xyz
*.hqizrypeugdykcau46cv.gacor33c.xyz
*.i51qg.gacor33c.xyz
*.kkytecc2mm.gacor33c.xyz
*.l0r4m.gacor33c.xyz
*.l1v3f.gacor33c.xyz
*.mail.gacor33c.xyz
*.muelvpp4gk.gacor33c.xyz
*.nemln.gacor33c.xyz
*.new.gacor33c.xyz
*.nktjv.gacor33c.xyz
*.ojxwbyjgaamuelvpp4gk.gacor33c.xyz
*.q86h5.gacor33c.xyz
*.rczhl.gacor33c.xyz
*.rkuvx.gacor33c.xyz
*.tpxa3.gacor33c.xyz
*.transactions.gacor33c.xyz
*.u46cv.gacor33c.xyz
*.uhkhlrczhl.gacor33c.xyz
*.webmail.gacor33c.xyz
*.whm.gacor33c.xyz
*.jibing.laoste.net
*.jwc.laoste.net
laoste.net
*.laoste.net
*.mail.laoste.net
*.work.laoste.net
*.04abf296-c77d-4006-baa3-e8ff35a10402.new88dd1.ltd
*.3decacd0-6a7b-4297-81af-204107618999.new88dd1.ltd
*.3e53235d-9f09-4b24-8c1d-8436034b39f2.new88dd1.ltd
*.43d90c0f-f92e-4025-9944-27cfcfebaf29.new88dd1.ltd
*.admin.new88dd1.ltd
*.api.new88dd1.ltd
*.app.new88dd1.ltd
*.blog.new88dd1.ltd
*.demo.new88dd1.ltd
*.external.new88dd1.ltd
*.intranet.new88dd1.ltd
*.members.new88dd1.ltd
*.my.new88dd1.ltd
new88dd1.ltd
*.new88dd1.ltd
*.portal.new88dd1.ltd
*.public.new88dd1.ltd
*.share.new88dd1.ltd
*.sharepoint.new88dd1.ltd
*.test.new88dd1.ltd
*.wp.new88dd1.ltd
*.www.new88dd1.ltd
Other domains in certificate