Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=houses-for-sale-02.sbs
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 30, 2026
Valid Until
August 28, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:C5:EF:E0:58:B2:31:FC:E8:0F:A9:65:02:B8:65:72:76:93:60:4D:D2:09:63:61:03:54:CA:86:A3:7B:93:00
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
idysa.org
*.idysa.org
*.ww25.idysa.org
almaticasb.com
*.almaticasb.com
cabaleas.com
*.cabaleas.com
*.ww38.cabaleas.com
channel132.com
*.channel132.com
coffeeorwhatever.com
*.coffeeorwhatever.com
*.www.coffeeorwhatever.com
concentration.com.au
*.concentration.com.au
*.preprod.concentration.com.au
*.31815.freshservice.co
*.euc-alerts.freshservice.co
freshservice.co
*.freshservice.co
*.intranet.freshservice.co
*.omfservicedesk.freshservice.co
*.seuho.freshservice.co
*.simons.freshservice.co
*.status.freshservice.co
houses-for-sale-02.sbs
*.houses-for-sale-02.sbs
kyougoku599.com
*.kyougoku599.com
*.mailout.kyougoku599.com
*.wildcard.kyougoku599.com
*.ww25.kyougoku599.com
*.admin.leechers.it
leechers.it
*.leechers.it
*.gtbn.objectifmaitrise.com
objectifmaitrise.com
*.objectifmaitrise.com
*.vtr.objectifmaitrise.com
*.ww17.objectifmaitrise.com
*.ww25.objectifmaitrise.com
petsasia.com
*.petsasia.com
planyourtrip.com.au
*.planyourtrip.com.au
*.random.planyourtrip.com.au
*.ww25.planyourtrip.com.au
*.m.plumperpass.co
plumperpass.co
*.plumperpass.co
*.ww25.plumperpass.co
*.ww38.plumperpass.co
*.ammbeta.privacyswap.finance
*.card.privacyswap.finance
*.cards.privacyswap.finance
*.git.privacyswap.finance
*.omsk.privacyswap.finance
privacyswap.finance
*.privacyswap.finance
*.pydex.privacyswap.finance
*.skbpugames.privacyswap.finance
*.vaults.privacyswap.finance
*.www4.privacyswap.finance
raivon.store
*.raivon.store
*.ww25.raivon.store
rescueme.au
*.rescueme.au
*.mta-sts.ritzyraiment.shop
ritzyraiment.shop
*.ritzyraiment.shop
rutting.com
*.rutting.com
skechpad.io
*.skechpad.io
*.mail.tdk.co.za
tdk.co.za
*.tdk.co.za
*.ww25.tdk.co.za
*.demo.weekwallet.io
weekwallet.io
*.weekwallet.io
*.www.weekwallet.io
xn--kchenablufthaube-jzb.de
*.xn--kchenablufthaube-jzb.de
*.app.xyzhyperunit.info
*.dev.xyzhyperunit.info
xyzhyperunit.info
*.xyzhyperunit.info
Other domains in certificate