Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=okmeydanitipdergisi.org
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 08, 2026
Valid Until
July 07, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:3A:F3:8E:FD:3F:C2:A3:4A:07:E5:BE:7A:4B:D1:10:A5:6B:DA:3C:4D:1A:CB:60:4D:07:90:2A:DC:3E:44:D0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
boyweek.com
*.boyweek.com
*.email.boyweek.com
*.ww25.boyweek.com
anklebrace.au
*.anklebrace.au
*.0ysiom.chinablognetwork.com
*.5hfvv3.chinablognetwork.com
chinablognetwork.com
*.chinablognetwork.com
*.cn.chinablognetwork.com
*.com.chinablognetwork.com
*.johnks3ljzf7.chinablognetwork.com
*.net.chinablognetwork.com
*.org.chinablognetwork.com
*.6pa0ev21o8zljykp.foodrecipe.info
foodrecipe.info
*.foodrecipe.info
homerecipe.com
*.homerecipe.com
*.mx7.homerecipe.com
*.wildcard.homerecipe.com
*.ww38.homerecipe.com
*.cn.hotmai1.com
*.com.hotmai1.com
*.dzjt.hotmai1.com
*.edu.hotmai1.com
*.ftp.hotmai1.com
hotmai1.com
*.hotmai1.com
*.nsd.hotmai1.com
*.ww25.hotmai1.com
inkfxtattoo.co.uk
*.inkfxtattoo.co.uk
*.random.inkfxtattoo.co.uk
*.ww38.inkfxtattoo.co.uk
*.www.inkfxtattoo.co.uk
kasern.de
*.kasern.de
*.random.kasern.de
keywordplanner.com.au
*.keywordplanner.com.au
*.community.labyrinth.com.au
*.europa.labyrinth.com.au
*.ftp.labyrinth.com.au
labyrinth.com.au
*.labyrinth.com.au
*.mail.labyrinth.com.au
*.mx.labyrinth.com.au
*.omega.labyrinth.com.au
*.server.labyrinth.com.au
*.webmail.labyrinth.com.au
*.ww17.labyrinth.com.au
*.ww25.labyrinth.com.au
lewisites.xyz
*.lewisites.xyz
*.authsmtp.neighboroil.com
*.email.neighboroil.com
*.flowiseai.neighboroil.com
*.getpoints.neighboroil.com
*.integration.neighboroil.com
neighboroil.com
*.neighboroil.com
*.smtp01.neighboroil.com
*.ww17.neighboroil.com
*.ww25.neighboroil.com
okmeydanitipdergisi.org
*.okmeydanitipdergisi.org
*.dev.terrystowingstl.com
*.insight.terrystowingstl.com
*.random.terrystowingstl.com
*.staging.terrystowingstl.com
terrystowingstl.com
*.terrystowingstl.com
*.ww38.terrystowingstl.com
thetruthpage.com
*.thetruthpage.com
*.ww25.thetruthpage.com
weinhausbluhm.com
*.weinhausbluhm.com
*.api.wildcoast.it
*.dev.wildcoast.it
*.dqxlestaging.wildcoast.it
*.mail.wildcoast.it
*.random.wildcoast.it
*.staging.wildcoast.it
*.store.wildcoast.it
*.superset.wildcoast.it
wildcoast.it
*.wildcoast.it
Other domains in certificate