Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=queenslandheelers.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:AE:04:EF:96:43:5E:6E:11:50:7C:16:D6:11:80:49:9B:9D:BB:03:85:2C:8D:57:A9:59:E5:40:01:15:3E:AE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
gap.au
*.gap.au
*.au.gap.au
*.bananarepublic.gap.au
*.gap.gap.au
*.homerssi.gap.au
*.oldnavy.gap.au
*.saa.gap.au
achsolution.com
*.achsolution.com
*.smtp3.achsolution.com
c88111.bet
*.c88111.bet
coincrypto.tech
*.coincrypto.tech
contermine.sbs
*.contermine.sbs
coppervision.com
*.coppervision.com
*.ra.coppervision.com
decifrandosuasdividas.com.br
*.decifrandosuasdividas.com.br
egotisticalshells.com
*.egotisticalshells.com
*.nocrawl.egotisticalshells.com
*.random.egotisticalshells.com
*.ww16.egotisticalshells.com
*.ww25.egotisticalshells.com
exhibit.com.au
*.exhibit.com.au
ezpong.store
*.ezpong.store
*.pay.ezpong.store
flagmantube.com
*.flagmantube.com
*.ns1.flagmantube.com
*.ns2.flagmantube.com
*.xxx.flagmantube.com
folhamarianense.com.br
*.folhamarianense.com.br
geektechsolutions.xyz
*.geektechsolutions.xyz
*.doc.hentaivl.com
hentaivl.com
*.hentaivl.com
*.media.hentaivl.com
*.sitemaps.hentaivl.com
*.ci.idrivesefely.com
idrivesefely.com
*.idrivesefely.com
*.pipeline.idrivesefely.com
*.blog.intensify.io
intensify.io
*.intensify.io
*.portal.intensify.io
*.tracking.intensify.io
*.ups.intensify.io
mypremiercreditcard.co
*.mypremiercreditcard.co
*.ww25.mypremiercreditcard.co
*.ww38.mypremiercreditcard.co
niques.com
*.niques.com
*.ww25.niques.com
queenslandheelers.com
*.queenslandheelers.com
*.summary.queenslandheelers.com
*.aboutbeautcestas-de-navidad.sabordesiempre.com
*.media.sabordesiempre.com
sabordesiempre.com
*.sabordesiempre.com
sercus.net
*.sercus.net
sihlenblog.info
*.sihlenblog.info
sinfraprojects.com
*.sinfraprojects.com
*.ww25.sinfraprojects.com
soyou.live
*.soyou.live
surfpro.online
*.surfpro.online
*.ww38.surfpro.online
*.cleaner.vclover.store
*.mask.vclover.store
vclover.store
*.vclover.store
*.ww25.vclover.store
vidhi.live
*.vidhi.live
Other domains in certificate