Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hjcld07.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C0:E3:78:AC:9C:64:9A:78:7C:F0:53:B6:E1:16:9E:4D:20:4B:9D:9F:C1:DF:B6:23:3E:74:3E:CB:6E:86:B0:73
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
floorwalk.com
*.floorwalk.com
*.beta.floorwalk.com
*.dev.floorwalk.com
*.directory.floorwalk.com
*.dspace.floorwalk.com
*.events.floorwalk.com
*.feedback.floorwalk.com
*.letter.floorwalk.com
*.ww16.floorwalk.com
*.ww38.floorwalk.com
*.xml.floorwalk.com
affordably.au
*.affordably.au
alllbirds.com
*.alllbirds.com
*.shop.alllbirds.com
hashpen.com
*.hashpen.com
*.hostmaster.hashpen.com
*.blablacar.hjcld07.cc
hjcld07.cc
*.hjcld07.cc
*.pay.hjcld07.cc
*.pochtabank.hjcld07.cc
*.sitemap.hjcld07.cc
*.sitemaps.hjcld07.cc
*.ww25.hjcld07.cc
*.ww38.hjcld07.cc
*.www.hjcld07.cc
*.analytics.kooten.com
*.anyconnect.kooten.com
*.apps.kooten.com
*.beta.kooten.com
*.cit.kooten.com
*.dash.kooten.com
*.demo.kooten.com
*.development.kooten.com
*.drvpn.kooten.com
*.fb.kooten.com
*.firewall.kooten.com
*.flow.kooten.com
*.insight.kooten.com
*.integration.kooten.com
kooten.com
*.kooten.com
*.m.kooten.com
*.mobile.kooten.com
*.prod.kooten.com
*.securevpn.kooten.com
*.studentsvpn.kooten.com
*.test.kooten.com
*.ww25.kooten.com
*.advocatesinc.myabsob.com
*.airbnb.myabsob.com
*.alacrityacademy.myabsob.com
*.hmsa.myabsob.com
*.medhostmle.myabsob.com
myabsob.com
*.myabsob.com
*.radepatner.myabsob.com
*.random.myabsob.com
*.supremecourtofohio.myabsob.com
*.thekeg.myabsob.com
*.trekbikes.myabsob.com
*.unilode.myabsob.com
*.vivint.myabsob.com
mysagepage.com
*.mysagepage.com
*.okta.mysagepage.com
*.kwid9.mysqqlzzdx.top
mysqqlzzdx.top
*.mysqqlzzdx.top
*.hostmaster.ndrangheta.com
ndrangheta.com
*.ndrangheta.com
*.forums.nianzhi.com
*.hostmaster.nianzhi.com
nianzhi.com
*.nianzhi.com
pfapa.com
*.pfapa.com
*.ww1.pfapa.com
*.rqtmtz.sgdq2.shop
sgdq2.shop
*.sgdq2.shop
*.ww16.zicarelli.com
*.ww17.zicarelli.com
zicarelli.com
*.zicarelli.com
Other domains in certificate