Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hormigon.mx
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
40:D3:D2:BF:B8:FE:1E:0A:84:FD:0D:08:A9:CA:BF:E9:BD:0C:AA:EE:11:FA:EA:98:E9:90:D2:64:22:6C:35:0C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
hwani.dev
*.hwani.dev
car-finance-cl.sbs
*.car-finance-cl.sbs
directorioescolar.mx
*.directorioescolar.mx
divorciar.net
*.divorciar.net
doubles.info
*.doubles.info
downtoearthstudio.com
*.downtoearthstudio.com
dragonball.mx
*.dragonball.mx
dreams.com.mx
*.dreams.com.mx
e-bikesinstallments.sbs
*.e-bikesinstallments.sbs
ecogreenpros.live
*.ecogreenpros.live
efxcom.com
*.efxcom.com
elespectador.com.mx
*.elespectador.com.mx
eleven.com.mx
*.eleven.com.mx
elf.mx
*.elf.mx
elheraldo.com.mx
*.elheraldo.com.mx
hormigon.mx
*.hormigon.mx
hvh337.mom
*.hvh337.mom
hwjkx.org
*.hwjkx.org
hydrasolutions.co
*.hydrasolutions.co
hytvc.us
*.hytvc.us
i2bcid.cyou
*.i2bcid.cyou
i7kyc9.cyou
*.i7kyc9.cyou
intercambios.mx
*.intercambios.mx
iphone.com.mx
*.iphone.com.mx
javtop1.red
*.javtop1.red
jgment.com
*.jgment.com
jianalihaizaojiage.com
*.jianalihaizaojiage.com
jordan.com.mx
*.jordan.com.mx
jsdyl.com
*.jsdyl.com
kings.com.mx
*.kings.com.mx
kn4ljb.cyou
*.kn4ljb.cyou
knmfx.app
*.knmfx.app
kokodygas.top
*.kokodygas.top
lelsxu.cyou
*.lelsxu.cyou
leones.com.mx
*.leones.com.mx
lethal.info
*.lethal.info
printers.com.mx
*.printers.com.mx
retiro.mx
*.retiro.mx
sellers.mx
*.sellers.mx
sku.mx
*.sku.mx
sua.com.mx
*.sua.com.mx
supercook.us
*.supercook.us
synergizeamplifyygold.info
*.synergizeamplifyygold.info
tadeo.com.mx
*.tadeo.com.mx
Other domains in certificate