Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=showy.it
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1B:BC:B1:BC:A9:0E:BE:4D:36:2A:4A:23:18:40:AC:90:FA:23:B2:1A:F2:42:F4:72:20:84:54:11:3B:1C:3A:DB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
betsmovegiris.net
*.betsmovegiris.net
*.connect.betsmovegiris.net
*.go.betsmovegiris.net
*.login.betsmovegiris.net
*.rdpgw.betsmovegiris.net
*.rds1.betsmovegiris.net
*.ts1.betsmovegiris.net
*.tsgateway.betsmovegiris.net
*.webapps.betsmovegiris.net
52146.my
*.52146.my
burycanparis.com
*.burycanparis.com
*.ww25.burycanparis.com
*.www.burycanparis.com
*.ads.donnerlakekitchenca.com
*.ci.donnerlakekitchenca.com
donnerlakekitchenca.com
*.donnerlakekitchenca.com
*.jenkins.donnerlakekitchenca.com
*.pipeline.donnerlakekitchenca.com
*.search.donnerlakekitchenca.com
hemplawfirm.com
*.hemplawfirm.com
huntingsales.com
*.huntingsales.com
infusefyxerclash.info
*.infusefyxerclash.info
irthinsights.com
*.irthinsights.com
*.h5.kmsp8.xyz
kmsp8.xyz
*.kmsp8.xyz
*.ww16.kmsp8.xyz
*.ww25.kmsp8.xyz
*.www.kmsp8.xyz
longfeng248.top
*.longfeng248.top
purwa.store
*.purwa.store
*.ww17.purwa.store
*.ww25.purwa.store
rentaltrailer.au
*.rentaltrailer.au
senju33g.pics
*.senju33g.pics
*.chat.sexbots.in
*.nzzddm7bpi3ygue0q9mtz44a.sexbots.in
sexbots.in
*.sexbots.in
*.webdisk.sexbots.in
*.ww38.sexbots.in
sfcgr.com
*.sfcgr.com
sge253.mom
*.sge253.mom
shedmagic.site
*.shedmagic.site
*.api.showy.it
*.ffffffffffff.showy.it
*.intelligence.showy.it
showy.it
*.showy.it
*.staging.showy.it
*.tlk.showy.it
staradvocates.blog
*.staradvocates.blog
stiftspfarrkirche-altoetting.de
*.stiftspfarrkirche-altoetting.de
*.www.stiftspfarrkirche-altoetting.de
trendingtoday.info
*.trendingtoday.info
tt66jj8.org
*.tt66jj8.org
uadzth.xyz
*.uadzth.xyz
usg-video.xyz
*.usg-video.xyz
vmccb.qpon
*.vmccb.qpon
wolgastmushrooms.com
*.wolgastmushrooms.com
xn--sqrw97b.cc
*.xn--sqrw97b.cc
xoflo.cyou
*.xoflo.cyou
xonywu.info
*.xonywu.info
Other domains in certificate