Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=prestigeshop.us
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 02, 2026
Valid Until
May 03, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:2E:30:27:23:6B:A9:91:30:6F:83:31:0A:46:0E:BA:C3:A1:60:CC:C9:D7:D4:EE:D1:89:38:CA:05:F4:37:21
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
fastinter.net
*.fastinter.net
1viena.shop
*.1viena.shop
39854.co
*.39854.co
48590.net
*.48590.net
54919.co
*.54919.co
59349.boston
*.59349.boston
65126.net
*.65126.net
685243.locker
*.685243.locker
741520.sbs
*.741520.sbs
901523.cn
*.901523.cn
animalfeedsolution.co.za
*.animalfeedsolution.co.za
bendingo.com
*.bendingo.com
byxbi.tv
*.byxbi.tv
dealverge.lat
*.dealverge.lat
evri-ud.art
*.evri-ud.art
fredthesampleguy.com
*.fredthesampleguy.com
getcodeninjalabs.com
*.getcodeninjalabs.com
hometrbk.com
*.hometrbk.com
hwmthl0.cyou
*.hwmthl0.cyou
insighted.us
*.insighted.us
investsmartlyonline.sbs
*.investsmartlyonline.sbs
karaknetwork.cam
*.karaknetwork.cam
kotalama03.xyz
*.kotalama03.xyz
lookbook.live
*.lookbook.live
lucasbrito.com
*.lucasbrito.com
lushesthetics.com
*.lushesthetics.com
macrumor.com
*.macrumor.com
mbocmc.net
*.mbocmc.net
modernapparelzone.cyou
*.modernapparelzone.cyou
namebar.live
*.namebar.live
nvmaa.pro
*.nvmaa.pro
nxkynxd.top
*.nxkynxd.top
panen-gg.com
*.panen-gg.com
pgakg.pro
*.pgakg.pro
prestigeshop.us
*.prestigeshop.us
qjsmho.shop
*.qjsmho.shop
radianthomedecor.com
*.radianthomedecor.com
safeedssolution.co.za
*.safeedssolution.co.za
sentify.us
*.sentify.us
shareyourfaith.org
*.shareyourfaith.org
sheilaflavinrd.com
*.sheilaflavinrd.com
superbchain.com
*.superbchain.com
tmcde.tv
*.tmcde.tv
tpg7q4.shop
*.tpg7q4.shop
Other domains in certificate