Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ghereon.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:F4:72:9E:46:C0:0E:F0:CA:D7:A9:C0:A4:6F:86:BA:CB:3E:75:98:C1:72:E2:FA:14:EB:0D:B7:71:54:4F:51
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
hbups.cc
*.hbups.cc
ghereon.shop
*.ghereon.shop
ghgwba.com
*.ghgwba.com
ghiaie.com
*.ghiaie.com
ghise.it
*.ghise.it
globaltradeventures.sbs
*.globaltradeventures.sbs
goldcoffee.it
*.goldcoffee.it
golden888.live
*.golden888.live
goodhair.top
*.goodhair.top
gossipparadiseline.live
*.gossipparadiseline.live
greenon.it
*.greenon.it
halffull.it
*.halffull.it
hennepin.net
*.hennepin.net
hooves.it
*.hooves.it
horecaofferte.it
*.horecaofferte.it
iava.it
*.iava.it
*.analytics.ihas.it
ihas.it
*.ihas.it
ilcontribuente.it
*.ilcontribuente.it
imlistening.it
*.imlistening.it
imsingle.it
*.imsingle.it
indevfit.top
*.indevfit.top
indicizzalo.it
*.indicizzalo.it
intelligentagentics.com
*.intelligentagentics.com
intellixpay.com
*.intellixpay.com
italyhotelsreview.it
*.italyhotelsreview.it
jobtransition.sbs
*.jobtransition.sbs
jumpfix.top
*.jumpfix.top
katusha.it
*.katusha.it
keltraxmkt.sbs
*.keltraxmkt.sbs
kenyahighcommission.in
*.kenyahighcommission.in
kito.it
*.kito.it
ky69-pg4.com
*.ky69-pg4.com
lamigliorescommessa.it
*.lamigliorescommessa.it
latinamerican.it
*.latinamerican.it
leonbets-s3ko.xyz
*.leonbets-s3ko.xyz
lffcyy.cn
*.lffcyy.cn
llmrankchecker.com
*.llmrankchecker.com
llnggf.net
*.llnggf.net
llwgp.pro
*.llwgp.pro
localsport.it
*.localsport.it
logonto.it
*.logonto.it
loxa.it
*.loxa.it
lurido.it
*.lurido.it
lvoslot.food
*.lvoslot.food
Other domains in certificate