Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=posadadelasmisas.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
October 24, 2025
Valid Until
January 22, 2026
30 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:93:C3:48:B4:A5:6A:9C:AE:D1:17:0B:57:BC:59:52:4F:32:EA:50:D5:8A:26:F5:1F:59:5B:40:DF:34:1F:6A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
bbbcen.com
*.bbbcen.com
*.random.bbbcen.com
*.12.streamgo.site
8qv.net
*.8qv.net
*.bb6.8qv.net
*.eomau.8qv.net
apl-net.com
*.apl-net.com
*.bantuan-bansos2024.apl-net.com
*.infoloker.apl-net.com
*.ww25.apl-net.com
buyiwphone.live
*.buyiwphone.live
*.domains.buyiwphone.live
*.crm.fxpoints.co
fxpoints.co
*.fxpoints.co
*.ww25.fxpoints.co
harmonix.club
*.harmonix.club
*.hk.hktv.live
hktv.live
*.hktv.live
*.live.hktv.live
*.tv.hktv.live
inform-echo.com
*.inform-echo.com
*.ns02.inform-echo.com
*.ww25.inform-echo.com
initoto88ok.store
*.initoto88ok.store
*.www.initoto88ok.store
megafilmeshdd.net
*.megafilmeshdd.net
*.webmail.megafilmeshdd.net
momxxxclips.net
*.momxxxclips.net
*.www.momxxxclips.net
newisly.com
*.newisly.com
*.ww25.newisly.com
*.admin.outlet-returns.shop
*.api.outlet-returns.shop
*.app.outlet-returns.shop
*.bigboss.outlet-returns.shop
*.boss.outlet-returns.shop
*.dev.outlet-returns.shop
*.home.outlet-returns.shop
*.hostmaster.outlet-returns.shop
*.m.outlet-returns.shop
*.mobile.outlet-returns.shop
*.news.outlet-returns.shop
outlet-returns.shop
*.outlet-returns.shop
*.random.outlet-returns.shop
*.sitemap.outlet-returns.shop
*.sitemaps.outlet-returns.shop
*.wap.outlet-returns.shop
*.ww1.outlet-returns.shop
*.ww25.outlet-returns.shop
*.www.outlet-returns.shop
pcjv.org
*.pcjv.org
posadadelasmisas.com
*.posadadelasmisas.com
*.demo-cicd.streamgo.site
*.hostmaster.streamgo.site
*.hotfix.streamgo.site
*.report.streamgo.site
streamgo.site
*.streamgo.site
*.ww12.streamgo.site
*.comwww.youjizz8.info
*.cowww.youjizz8.info
*.cwww.youjizz8.info
*.es.youjizz8.info
*.httpswww.youjizz8.info
*.httpwww.youjizz8.info
*.htwww.youjizz8.info
*.info8www.youjizz8.info
*.jizz.youjizz8.info
*.jizzyoucomwww.youjizz8.info
youjizz8.info
*.youjizz8.info
*.youjizzcomwww.youjizz8.info
*.zh.youjizz8.info
Other domains in certificate