Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=allgoodhome.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
41:4D:A5:1E:BB:2E:97:F0:55:5A:4C:F4:FA:80:86:AC:E1:7B:D9:45:8A:FE:4B:66:DA:FA:A2:6E:E7:5A:46:C2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
fidoi.com
*.fidoi.com
allgoodhome.co
*.allgoodhome.co
asia-m.co
*.asia-m.co
astrisak.click
*.astrisak.click
astrisak.info
*.astrisak.info
astrisak.pro
*.astrisak.pro
astrisak.top
*.astrisak.top
asyfn.loan
*.asyfn.loan
b722.cc
*.b722.cc
bcgameslots2.xyz
*.bcgameslots2.xyz
bellssa.co
*.bellssa.co
bestofhairstyles.co
*.bestofhairstyles.co
bitcoinearn.co
*.bitcoinearn.co
bj88-vn.lol
*.bj88-vn.lol
bridgeviewfinance.co
*.bridgeviewfinance.co
buffalogames.co
*.buffalogames.co
businessclassguru.co
*.businessclassguru.co
chanesi.co
*.chanesi.co
clevercreative.co
*.clevercreative.co
comcastnow.co
*.comcastnow.co
connectdrive.co
*.connectdrive.co
convertino.co
*.convertino.co
coolmathsgames.co
*.coolmathsgames.co
cosmicclimb.co
*.cosmicclimb.co
crewsupply.co
*.crewsupply.co
dealsreview.co
*.dealsreview.co
dekylie.buzz
*.dekylie.buzz
disneygo.co
*.disneygo.co
elevateelixir.co
*.elevateelixir.co
elitewin447.shop
*.elitewin447.shop
eversostudio.co
*.eversostudio.co
faxonfirearms.co
*.faxonfirearms.co
fedgex.io
*.fedgex.io
fermavip.xyz
*.fermavip.xyz
fmoies.co
*.fmoies.co
freemidi.co
*.freemidi.co
frontwavecu.co
*.frontwavecu.co
getfreeflights.co
*.getfreeflights.co
godaady.co
*.godaady.co
godadao.com
*.godadao.com
h36s.icu
*.h36s.icu
mecari.co
*.mecari.co
vitaliia.co
*.vitaliia.co
wildcountrymeats.co
*.wildcountrymeats.co
wildmade.co
*.wildmade.co
Other domains in certificate