Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=benchmarkaievolve.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 15, 2026
Valid Until
July 14, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:0F:54:DC:18:BC:AF:DD:AC:1C:78:7F:CD:F6:7E:F1:3E:54:0B:AF:D1:95:85:94:81:C3:7A:37:EC:7C:28:18
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
grapefruitog.com
*.grapefruitog.com
*.42d99063-89a5-4090-8246-72978e6c95fa.grapefruitog.com
*.a.grapefruitog.com
*.api.grapefruitog.com
*.brueca.grapefruitog.com
*.testing.grapefruitog.com
*.admin.benchmarkaievolve.co
benchmarkaievolve.co
*.benchmarkaievolve.co
*.demo.benchmarkaievolve.co
*.dev.benchmarkaievolve.co
*.admin.cementdecorative.com
*.backend.cementdecorative.com
cementdecorative.com
*.cementdecorative.com
*.dashs.cementdecorative.com
*.dev.cementdecorative.com
*.report.cementdecorative.com
*.superset.cementdecorative.com
*.f2b54e2b-a9b7-4326-a6e2-49e84599e079.honeytap.me
honeytap.me
*.honeytap.me
*.bt.hostingsolution24.com
hostingsolution24.com
*.hostingsolution24.com
*.hostmaster.ipadhome.info
ipadhome.info
*.ipadhome.info
*.08a959b9-4555-4de3-9c74-f121e7a30c30.lorea.pet
*.94e0d470-87aa-4f0c-865d-bfa4d2cf8dc7.lorea.pet
*.ad90c846-d524-4c62-8f27-894e86fd8b46.lorea.pet
*.admin.lorea.pet
*.api.lorea.pet
*.app.lorea.pet
*.assets.lorea.pet
*.demo.lorea.pet
*.dev.lorea.pet
*.docs.lorea.pet
*.hostmaster.lorea.pet
*.intranet.lorea.pet
lorea.pet
*.lorea.pet
*.my.lorea.pet
*.parked.lorea.pet
*.portal.lorea.pet
*.public.lorea.pet
*.share.lorea.pet
*.test.lorea.pet
*.webmail.lorea.pet
*.zzdbrhostmaster.lorea.pet
*.backend.seriesjr2.site
*.cicd.seriesjr2.site
seriesjr2.site
*.seriesjr2.site
*.ww25.seriesjr2.site
*.analytics.serveroffice.it
*.appuntamenti.serveroffice.it
*.autodiscover.serveroffice.it
*.colf.serveroffice.it
*.cpanel.serveroffice.it
*.desk.serveroffice.it
*.domestici.serveroffice.it
*.forecast.serveroffice.it
*.gpas.serveroffice.it
*.hostmaster.serveroffice.it
*.mail.serveroffice.it
*.office.serveroffice.it
*.prova.serveroffice.it
serveroffice.it
*.serveroffice.it
*.superset.serveroffice.it
*.ticket.serveroffice.it
*.web.serveroffice.it
*.webdisk.serveroffice.it
*.webmail.serveroffice.it
*.wiki.serveroffice.it
*.www.serveroffice.it
*.mail.syte.it
syte.it
*.syte.it
*.curlz.wegotkidz.com
*.kidzwithcurlz.wegotkidz.com
*.love.wegotkidz.com
*.random.wegotkidz.com
*.server.wegotkidz.com
wegotkidz.com
*.wegotkidz.com
*.www.wegotkidz.com
Other domains in certificate