Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=intimatebrides.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 23, 2026
Valid Until
August 21, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:8D:9C:BC:A3:E3:E8:5A:35:07:30:B3:EF:30:F6:0B:5E:9D:AC:14:7C:2A:BE:E0:26:7F:C3:21:B3:7B:54:34
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
83 domains
biddta.com
*.biddta.com
*.go.biddta.com
*.jenkins.biddta.com
*.webmail.biddta.com
*.whatsapp.biddta.com
adjustablemattress3-op.space
*.adjustablemattress3-op.space
*.dev.adjustablemattress3-op.space
*.fw.adjustablemattress3-op.space
*.hotfix.adjustablemattress3-op.space
*.lqbakykfeg.adjustablemattress3-op.space
arihantitstore.com
*.arihantitstore.com
avex.it
*.avex.it
*.backend.avex.it
*.hostmaster.avex.it
*.remote.avex.it
bradleespizzatwo.com
*.bradleespizzatwo.com
bythecoastrealty.com
*.bythecoastrealty.com
civilizations.com.au
*.civilizations.com.au
designartikelen.be
*.designartikelen.be
*.ww38.designartikelen.be
desoxythymidin.de
*.desoxythymidin.de
duplicheker.com
*.duplicheker.com
*.info.duplicheker.com
*.ww16.duplicheker.com
*.www.duplicheker.com
fde.com.au
*.fde.com.au
*.mx.fde.com.au
*.www.fde.com.au
hawaiisnorkl.com
*.hawaiisnorkl.com
hunter85.vip
*.hunter85.vip
intimatebrides.com
*.intimatebrides.com
knowyoga.org
*.knowyoga.org
lifestreamde.com
*.lifestreamde.com
*.ww25.lifestreamde.com
*.cgsex.mioves.com
*.exchange.mioves.com
*.gg51.mioves.com
*.imap.mioves.com
mioves.com
*.mioves.com
*.random.mioves.com
*.smtps.mioves.com
*.sxx.mioves.com
*.vpn.mioves.com
*.workspace.mioves.com
*.dol.motala.de
motala.de
*.motala.de
myinjurylawyer.com.au
*.myinjurylawyer.com.au
*.com.paksmm.pro
paksmm.pro
*.paksmm.pro
*.store.paksmm.pro
puslapiuera.website
*.puslapiuera.website
skdistributions.com
*.skdistributions.com
thaumy.net
*.thaumy.net
*.ww25.thaumy.net
*.mail.vitalitylife.club
*.ns2.vitalitylife.club
vitalitylife.club
*.vitalitylife.club
wordotp.in
*.wordotp.in
Other domains in certificate