Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=accommodationbeechworth.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 09, 2026
Valid Until
July 08, 2026
40 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:3F:2A:10:D9:F0:E4:73:0E:ED:4E:42:95:46:3C:E7:37:CC:D8:C5:C1:B7:BA:C9:00:22:AA:39:BA:74:B8:6D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
fshionnova.com
*.fshionnova.com
accommodationbeechworth.au
*.accommodationbeechworth.au
adidas-superstar.ru
*.adidas-superstar.ru
advertisement.au
*.advertisement.au
asianmassage.it
*.asianmassage.it
bancagenetica.it
*.bancagenetica.it
enfasi.it
*.enfasi.it
escortprofile.info
*.escortprofile.info
*.imap.escortprofile.info
*.ednwel.fare.com.au
fare.com.au
*.fare.com.au
*.fruga.fare.com.au
*.horsewe.fare.com.au
*.mywel.fare.com.au
*.pe.fare.com.au
*.taxi.fare.com.au
fontsquirell.com
*.fontsquirell.com
freelancework.au
*.freelancework.au
*.ww38.freelancework.au
googletranskate.com
*.googletranskate.com
ineedfibre.com
*.ineedfibre.com
israel-canada.org
*.israel-canada.org
*.cicd.javlxx.info
javlxx.info
*.javlxx.info
*.jenkins-preview.javlxx.info
*.pipeline.javlxx.info
*.qa.javlxx.info
*.sex7.javlxx.info
lemonstaar.com
*.lemonstaar.com
littleletter.it
*.littleletter.it
lkpre.site
*.lkpre.site
loovaist.net
*.loovaist.net
madsims.com
*.madsims.com
newdigital.au
*.newdigital.au
opelocasion.es
*.opelocasion.es
*.ww25.opelocasion.es
*.ww38.opelocasion.es
*.m.phoe.org
*.mail.phoe.org
phoe.org
*.phoe.org
*.www.phoe.org
pvpterbaik.click
*.pvpterbaik.click
*.com.roomrentnepal.com
roomrentnepal.com
*.roomrentnepal.com
scenbird.com
*.scenbird.com
*.m.shinigami03.com
shinigami03.com
*.shinigami03.com
sitoinformatico.it
*.sitoinformatico.it
*.analytics.skydiveherveybay.com.au
*.mail.skydiveherveybay.com.au
skydiveherveybay.com.au
*.skydiveherveybay.com.au
*.ww38.skydiveherveybay.com.au
tvsubtitle.net
*.tvsubtitle.net
*.ww25.tvsubtitle.net
vigneronsbio-aquitaine.org
*.vigneronsbio-aquitaine.org
*.m.xn--vus137a.com
xn--vus137a.com
*.xn--vus137a.com
Other domains in certificate