Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cliftonbeach.com.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 31, 2025
Valid Until
March 31, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:65:49:BF:20:9F:C6:45:DE:0C:36:91:C5:9E:C7:47:29:50:83:2D:A9:78:FB:F5:02:CD:4B:CC:09:0E:28:EB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
fandamgo.com
*.fandamgo.com
*.w.fandamgo.com
*.ww.fandamgo.com
cliftonbeach.com.au
*.cliftonbeach.com.au
*.c5.foxborobedandbreakfast.com
foxborobedandbreakfast.com
*.foxborobedandbreakfast.com
*.insights.foxborobedandbreakfast.com
*.mail.foxborobedandbreakfast.com
*.mbox.foxborobedandbreakfast.com
*.ww16.foxborobedandbreakfast.com
lens-training.at
*.lens-training.at
nzjobs.com.au
*.nzjobs.com.au
promoviendo.com
*.promoviendo.com
*.random.promoviendo.com
schoololigy.com
*.schoololigy.com
sharelife.space
*.sharelife.space
surrounded.au
*.surrounded.au
*.1846m.windowreplacement06.xyz
*.2194l.windowreplacement06.xyz
*.3ugcn.windowreplacement06.xyz
*.4qwa0.windowreplacement06.xyz
*.6cd9j.windowreplacement06.xyz
*.6y8gt.windowreplacement06.xyz
*.78z68.windowreplacement06.xyz
*.87ab5.windowreplacement06.xyz
*.8r9pg.windowreplacement06.xyz
*.95vhx.windowreplacement06.xyz
*.b5hyr.windowreplacement06.xyz
*.backend.windowreplacement06.xyz
*.civoh.windowreplacement06.xyz
*.cnfr9.windowreplacement06.xyz
*.cuyk.windowreplacement06.xyz
*.demo.windowreplacement06.xyz
*.dn930.windowreplacement06.xyz
*.ebwif.windowreplacement06.xyz
*.eu3rm.windowreplacement06.xyz
*.fcvkr.windowreplacement06.xyz
*.fdb74.windowreplacement06.xyz
*.fdy0p.windowreplacement06.xyz
*.fz4qv.windowreplacement06.xyz
*.g22y8.windowreplacement06.xyz
*.g89kw.windowreplacement06.xyz
*.hgsq5.windowreplacement06.xyz
*.hzurn2l6wm.windowreplacement06.xyz
*.ilkfsgjdvb.windowreplacement06.xyz
*.ip4i2.windowreplacement06.xyz
*.j2zfz.windowreplacement06.xyz
*.jxc88.windowreplacement06.xyz
*.jyikv.windowreplacement06.xyz
*.kp5po.windowreplacement06.xyz
*.kxqlhdemo.windowreplacement06.xyz
*.lcjev.windowreplacement06.xyz
*.lkzdx.windowreplacement06.xyz
*.me7q1.windowreplacement06.xyz
*.n2pro.windowreplacement06.xyz
*.nan1j.windowreplacement06.xyz
*.ndifg.windowreplacement06.xyz
*.nktjv.windowreplacement06.xyz
*.nslow.windowreplacement06.xyz
*.o1ghs.windowreplacement06.xyz
*.osldc.windowreplacement06.xyz
*.q86h5.windowreplacement06.xyz
*.s28s9.windowreplacement06.xyz
*.tpxa3.windowreplacement06.xyz
*.v6j6e.windowreplacement06.xyz
windowreplacement06.xyz
*.windowreplacement06.xyz
*.wsct4.windowreplacement06.xyz
*.www.windowreplacement06.xyz
*.xbh6h.windowreplacement06.xyz
*.xrqcg.windowreplacement06.xyz
*.yhue2.windowreplacement06.xyz
*.yszpgnslow.windowreplacement06.xyz
*.z3dl1.windowreplacement06.xyz
*.z4gbs.windowreplacement06.xyz
*.zl1z8.windowreplacement06.xyz
*.zruod.windowreplacement06.xyz
*.amp.xhamstsr.com
*.m.xhamstsr.com
xhamstsr.com
*.xhamstsr.com
Other domains in certificate