Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bmovie.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 29, 2026
Valid Until
April 29, 2026
63 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:BA:F1:93:A3:57:34:FF:0F:5A:98:DB:18:DA:F1:2A:3F:5B:0A:D0:3A:17:E8:36:20:0D:C8:3A:65:83:D8:2A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
73 domains
emptyquartertours.com
*.emptyquartertours.com
*.mail1.emptyquartertours.com
*.ww38.emptyquartertours.com
apul.net
*.apul.net
beautysalon5.com
*.beautysalon5.com
*.blog.bmovie.co
bmovie.co
*.bmovie.co
*.cpanel.bmovie.co
*.hostmaster.bmovie.co
*.mail.bmovie.co
*.webdisk.bmovie.co
*.webmail.bmovie.co
*.www.bmovie.co
chwr7s8u.com
*.chwr7s8u.com
*.random.chwr7s8u.com
cryptoville.au
*.cryptoville.au
estereolatina.com
*.estereolatina.com
*.ww38.estereolatina.com
*.blog.freemcash.com
*.cpanel.freemcash.com
freemcash.com
*.freemcash.com
*.rina.freemcash.com
gibson.de
*.gibson.de
*.holmes.gibson.de
gomovies123.sx
*.gomovies123.sx
*.ww38.gomovies123.sx
greatpatriotsstore.com
*.greatpatriotsstore.com
*.random.greatpatriotsstore.com
infinity-outdoor.com
*.infinity-outdoor.com
*.mail.infinity-outdoor.com
odb.au
*.odb.au
*.random.odb.au
petpetpet.com
*.petpetpet.com
*.p.pornzong.com
pornzong.com
*.pornzong.com
*.family.qustdio.com
qustdio.com
*.qustdio.com
*.random.realreturn.com.au
realreturn.com.au
*.realreturn.com.au
relocating.au
*.relocating.au
*.internal.sandiegopediatricians.com
sandiegopediatricians.com
*.sandiegopediatricians.com
*.mailserver.shoppingbasket.com.au
shoppingbasket.com.au
*.shoppingbasket.com.au
techsky.co.uk
*.techsky.co.uk
*.webmail.techsky.co.uk
thesmokingcork.com
*.thesmokingcork.com
tradebc5.xyz
*.tradebc5.xyz
xkmawsi.com
*.xkmawsi.com
Other domains in certificate