Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=benjaminkarlmalia.recipes
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 13, 2026
Valid Until
July 12, 2026 64 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B0:3D:83:F4:37:1C:D3:AA:15:31:D6:6B:85:3D:95:00:BB:7B:81:95:04:65:10:FF:57:35:41:00:44:DD:6D:53
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
haneen.com *.haneen.com *.ad.haneen.com *.development.haneen.com *.shop.haneen.com *.ww25.haneen.com *.ww34.haneen.com

Other domains in certificate

apptechnician.com *.apptechnician.com *.m.apptechnician.com
*.a.benjaminkarlmalia.recipes *.autodiscover.benjaminkarlmalia.recipes *.backoffice.benjaminkarlmalia.recipes benjaminkarlmalia.recipes *.benjaminkarlmalia.recipes *.blog.benjaminkarlmalia.recipes *.git.benjaminkarlmalia.recipes *.hostmaster.benjaminkarlmalia.recipes *.iidlqauimpapi.benjaminkarlmalia.recipes *.root.benjaminkarlmalia.recipes *.wp.benjaminkarlmalia.recipes *.ww38.benjaminkarlmalia.recipes *.www.benjaminkarlmalia.recipes
boostingseamlessaihq.co *.boostingseamlessaihq.co
buystocks.net.au *.buystocks.net.au *.ww25.buystocks.net.au *.ww38.buystocks.net.au
*.app.centrestreetsteakandpizza.com centrestreetsteakandpizza.com *.centrestreetsteakandpizza.com *.smtp.centrestreetsteakandpizza.com
*.acc4u.deer.io *.akibest.deer.io deer.io *.deer.io *.getakk.deer.io *.rdpdedic.deer.io *.reg.deer.io *.smsaktiv.deer.io *.superacc.deer.io *.svejereg.deer.io
dixieland.com *.dixieland.com *.mobile.dixieland.com *.ww25.dixieland.com
*.builder.fasthorsetarotreadings.com fasthorsetarotreadings.com *.fasthorsetarotreadings.com *.ww25.fasthorsetarotreadings.com
*.9126.girlx.com *.beta.girlx.com *.ci.girlx.com girlx.com *.girlx.com *.hors.girlx.com *.superset.girlx.com *.users.girlx.com *.x.girlx.com
glassacademy.shop *.glassacademy.shop
jdb.au *.jdb.au *.ww25.jdb.au
lifeinsurancecomparisons.com.au *.lifeinsurancecomparisons.com.au *.staging.lifeinsurancecomparisons.com.au *.ww17.lifeinsurancecomparisons.com.au *.www.lifeinsurancecomparisons.com.au
sbusd.com *.sbusd.com *.ww25.sbusd.com
*.content.scratchwiki.info *.homepage2.scratchwiki.info scratchwiki.info *.scratchwiki.info
*.mx.stemabc123.com stemabc123.com *.stemabc123.com *.ww25.stemabc123.com
stockpotchelsea.co.uk *.stockpotchelsea.co.uk
*.random.techtonicgames.com techtonicgames.com *.techtonicgames.com *.ww25.techtonicgames.com
villageofdexter.org *.villageofdexter.org *.ww38.villageofdexter.org