Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=staads.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:4B:A8:31:0F:E8:5C:B6:BF:64:F4:AF:EB:18:E5:D8:C4:2F:ED:CA:FE:11:D3:A2:EB:42:9D:32:D7:B4:31:DB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
homepros.io
*.homepros.io
*.api.homepros.io
*.cpcontacts.domainsalelist.com
domainsalelist.com
*.domainsalelist.com
*.hostmaster.domainsalelist.com
*.mail.domainsalelist.com
*.mx.domainsalelist.com
*.webmail.domainsalelist.com
*.ww6.domainsalelist.com
*.www.domainsalelist.com
*.wwww.domainsalelist.com
*.17.ii.au
*.c.ii.au
*.dki.ii.au
*.i.ii.au
ii.au
*.ii.au
*.ii.ii.au
*.iii.ii.au
*.iinet.ii.au
*.k.ii.au
*.kopiengebildetwerden.ii.au
*.kwanamba.ii.au
*.leo.ii.au
*.leoncuroo.ii.au
*.lm.ii.au
*.mida.ii.au
*.namba.ii.au
*.nikusubi.ii.au
*.no.ii.au
*.o.ii.au
*.q.ii.au
*.ubea.ii.au
*.y.ii.au
*.32.piccola.com
*.anywhere.piccola.com
*.assets.piccola.com
*.autoconfig.piccola.com
*.beta.piccola.com
*.ci.piccola.com
*.cwcifeuenw.piccola.com
*.dkdmcremoteapps.piccola.com
*.files.piccola.com
*.help.piccola.com
*.hostmaster.piccola.com
*.infor.piccola.com
*.ipe.piccola.com
*.la.piccola.com
*.mail.piccola.com
*.mailin.piccola.com
*.mia.piccola.com
*.mta-sts.piccola.com
*.mx10.piccola.com
*.newmail2013.piccola.com
*.o.piccola.com
*.ogrencieposta.piccola.com
*.one.piccola.com
*.outlook.piccola.com
piccola.com
*.piccola.com
*.qomwqimap.piccola.com
*.qomwqimap1.piccola.com
*.ravpn.piccola.com
*.remoteapps.piccola.com
*.remotebb.piccola.com
*.rvremote.piccola.com
*.s2mbvrvnsw.piccola.com
*.secure.piccola.com
*.shop.piccola.com
*.sip.piccola.com
*.sitemap.piccola.com
*.srv.piccola.com
*.ssl.piccola.com
*.store.piccola.com
*.support.piccola.com
*.webmail2013.piccola.com
*.ww11.piccola.com
*.ww25.piccola.com
*.www.piccola.com
*.www2.piccola.com
*.app.shopaspen.net
shopaspen.net
*.shopaspen.net
staads.com
*.staads.com
*.api.stateoutings.com
stateoutings.com
*.stateoutings.com
Other domains in certificate