Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=www.retidos.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 10, 2026
Valid Until
July 09, 2026
59 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
91:E5:16:51:17:D3:0E:18:FF:B6:EE:82:54:0E:0B:E0:27:A6:BD:A2:71:75:D3:3F:4E:94:C8:B5:F9:68:2B:39
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
getblinkk.com
www.acmogroup.com
aoyue.cc
arcosa.mx
ashbourne.ca
lithium.chotikarn.me
coa-dapp.cointools.me
corkccc.org
dev.cuddle.me
stg.cuddle.me
www.cuddle.me
dave-potts.co.uk
gjorchestra.dmfr.org
dmc.duckma.me
cotizador.facilseguro.com
admin-board-phl.flexm.com
remittance-board-phl-uat.flexm.com
frc8551.org
geeksanon.ca
givepanel.me
projects.golioth.io
psops.goyirunway.com
psorderd.goyirunway.com
h2stdio.com
link.hailto.com
www.horoskopskiznaci.info
apple.huskymobile.com
www.intuitive-sensitives.com
stgdl.istartarabic.com
www.iwas.consulting
www.joery.me
jokergamingai.com
juliataranti.me
lunyby.com
www.madrang.com
meduso.dev
mentalizate.com.mx
moreprogram.com.au
myanmargita.com
www.myawaddy-ltr.com
www.myfirststepsdaycare.com
setup.mynevo.com
focus.myphoto.com
auth.myvirtual.kitchen
narongsak.me
www.nglapp.com
www.ninevastudios.com
dist.ninpath.com
app.nonrox.com
www.noonarete.com
organizacijasahrana.rs
padexa.online
get-shit-done.pavel-kaminsky.com
savol.pecas2b.com.br
www.phantuanvi.com
pindarlabs.com
pogrebnivenci.rs
kuoom.prajeetshrestha.com.np
prevozpokojnikainostranstvo.rs
prodajapogrebneopreme.rs
candl.rachann.com
www.rameez.me
invite.reddoor.com
www.retidos.com
richardhung.me
www.richardhung.me
rsdellentechnik.de
sahranebeograd.rs
sanduci.rs
sertega.cl
training.sevaxapp.com
web.sevaxapp.com
www.sharanyamishra.com
pediatrichelp.sharp-devs.com
shreeketh.com
admin.siabulls.com
redirect.siabulls.com
www.siabulls.com
account.signalrgb.com
rss.singulargarden.com
rmdh-dev.sipora.io
sliptap.com
security.smartsaverzambia.com
snypemedia.com
social-chan.com
somecontent.com
soundboardbot.com
sparkello.com
www.sushantshrestha.com.np
dev.techinterview.me
cern.technis.com
restaurant-blayais.technis.com
www.tennis-claw.com
tnis.tffn.me
tvseriesapp.com
uslugezasahrane.rs
clientes.villadelrey.ec
catarina.vongohren.me
ccms.wonderschool.dev
forms.wonderschool.dev
Other domains in certificate