Open
Cached
·
just now
79/100
SECURITY SCORE
Certificate Information
Subject
CN=choicewasteservice.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3C:25:9E:F1:EA:FB:B4:85:00:C8:76:86:13:4B:9B:3F:24:9D:F3:0C:2E:DD:2A:D5:83:B3:78:7C:3A:5E:61:D5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
fb88.ceo
*.fb88.ceo
aborti.com
*.aborti.com
aduiko.com
*.aduiko.com
answercatch.com
*.answercatch.com
choicewasteservice.com
*.choicewasteservice.com
domred.com
*.domred.com
dusunceli.com
*.dusunceli.com
elbonche.com
*.elbonche.com
espericueta.com
*.espericueta.com
evalys.com
*.evalys.com
faketexting.com
*.faketexting.com
fitnesslifestylechange.run
*.fitnesslifestylechange.run
fondis.co.uk
*.fondis.co.uk
formulario.net
*.formulario.net
frongillo.com
*.frongillo.com
gubellini.com
*.gubellini.com
lospasteles.com
*.lospasteles.com
luxurylash.co.uk
*.luxurylash.co.uk
mapdrivingschool.co.uk
*.mapdrivingschool.co.uk
migaleria.com
*.migaleria.com
naturetravelodyssey.xyz
*.naturetravelodyssey.xyz
qyyhq.com
*.qyyhq.com
*.ww25.qyyhq.com
richardcowell.co.uk
*.richardcowell.co.uk
techmaterials.co.uk
*.techmaterials.co.uk
*.06726598-c4d0-4f4b-bdcf-337f446d1160.torrents9.tv
*.admin.torrents9.tv
*.airflow.torrents9.tv
*.api.torrents9.tv
*.app.torrents9.tv
*.auth.torrents9.tv
*.backend.torrents9.tv
*.blog.torrents9.tv
*.dashboard.torrents9.tv
*.demo.torrents9.tv
*.dev.torrents9.tv
*.extranet.torrents9.tv
*.home.torrents9.tv
*.intranet.torrents9.tv
*.m.torrents9.tv
*.mail.torrents9.tv
*.mobile.torrents9.tv
*.news.torrents9.tv
*.old.torrents9.tv
*.public.torrents9.tv
*.report.torrents9.tv
*.share.torrents9.tv
*.site.torrents9.tv
*.sitemap.torrents9.tv
*.staging.torrents9.tv
*.stats.torrents9.tv
*.superset.torrents9.tv
*.test.torrents9.tv
torrents9.tv
*.torrents9.tv
*.wap.torrents9.tv
*.web.torrents9.tv
*.wiki.torrents9.tv
*.wildcard.torrents9.tv
*.ww25.torrents9.tv
*.www.torrents9.tv
virtoolly.store
*.virtoolly.store
wings-in-the-night.co.uk
*.wings-in-the-night.co.uk
Other domains in certificate