Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=heartfeltweddingsstudio.beauty
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4F:49:E5:10:81:58:38:EA:26:27:95:17:64:1E:67:79:68:3C:57:17:DC:9E:7E:29:79:A7:A6:87:63:FD:18:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
indowindeedee.cfd
*.indowindeedee.cfd
heartfeltweddingsstudio.beauty
*.heartfeltweddingsstudio.beauty
hellopath.com
*.hellopath.com
helpbcrf.com
*.helpbcrf.com
heng368th.com
*.heng368th.com
heyoptimumoutbound.com
*.heyoptimumoutbound.com
hgcpbet.com
*.hgcpbet.com
hidayatullahbatam.com
*.hidayatullahbatam.com
historyofcat.com
*.historyofcat.com
hlsjz.cn
*.hlsjz.cn
ho88play.click
*.ho88play.click
home-care-agency-ca11-dp.click
*.home-care-agency-ca11-dp.click
home-info.net
*.home-info.net
home-solar-631967495.click
*.home-solar-631967495.click
honestwhite.info
*.honestwhite.info
hotlines.it
*.hotlines.it
houserepair.us
*.houserepair.us
hurajpkasihjackpot.blog
*.hurajpkasihjackpot.blog
hvac-installation.buzz
*.hvac-installation.buzz
ilcommercioelettronico.it
*.ilcommercioelettronico.it
implicitfintradingfirm.biz
*.implicitfintradingfirm.biz
incomepropertysolutionhub.com
*.incomepropertysolutionhub.com
incomepropertysolutionsgroup.com
*.incomepropertysolutionsgroup.com
indowindull.cfd
*.indowindull.cfd
infopasarlaku.icu
*.infopasarlaku.icu
informationdesign.it
*.informationdesign.it
inspiringtraveljourneys.xyz
*.inspiringtraveljourneys.xyz
insurance-quotes-002.cfd
*.insurance-quotes-002.cfd
iworld-store.com
*.iworld-store.com
j4a3eg.shop
*.j4a3eg.shop
jadeglobalteam.com
*.jadeglobalteam.com
jagallerybd.com
*.jagallerybd.com
jarwo777mantap.com
*.jarwo777mantap.com
r9513.com
*.r9513.com
racist.it
*.racist.it
radiomoriah7.com
*.radiomoriah7.com
rakeshprajapati.co
*.rakeshprajapati.co
rapidcleantechnology.com
*.rapidcleantechnology.com
rejbcbrw.com
*.rejbcbrw.com
relicivz.click
*.relicivz.click
remotecoachprivacypolicy.fit
*.remotecoachprivacypolicy.fit
remove-bags-under-eyes-091.click
*.remove-bags-under-eyes-091.click
riadenoia.com
*.riadenoia.com
rikvip.soy
*.rikvip.soy
ronobuy.com
*.ronobuy.com
Other domains in certificate