Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=flooringinstallation285480.icu
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4B:48:DA:CE:FE:74:F8:8C:51:9D:54:FB:BB:6E:55:DE:28:17:A4:F7:7A:76:B2:AF:6D:EF:86:A1:6E:F8:20:BC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
innovations.studio
*.innovations.studio
flooringinstallation285480.icu
*.flooringinstallation285480.icu
forex-brokery.com
*.forex-brokery.com
gdsxct.net
*.gdsxct.net
gdt71.top
*.gdt71.top
geldzaehlmaschine.com
*.geldzaehlmaschine.com
get-nextgensales.com
*.get-nextgensales.com
getfirstpagedigitalsg.com
*.getfirstpagedigitalsg.com
goldenability.xyz
*.goldenability.xyz
goldinvestment895266.icu
*.goldinvestment895266.icu
gozns.bid
*.gozns.bid
greenparquet.com
*.greenparquet.com
hairtransplant892196.icu
*.hairtransplant892196.icu
hanoi-uniform-778628042.click
*.hanoi-uniform-778628042.click
hb62.top
*.hb62.top
himachaldestination.com
*.himachaldestination.com
hndsdlqc.com
*.hndsdlqc.com
hub-chutepartners.com
*.hub-chutepartners.com
hub777.online
*.hub777.online
hubalyq1188.vip
*.hubalyq1188.vip
hy6918.shop
*.hy6918.shop
hzh31uv.top
*.hzh31uv.top
hztor.com
*.hztor.com
iadni.org
*.iadni.org
ib1.xyz
*.ib1.xyz
ib29tc.xyz
*.ib29tc.xyz
ibbbhd.bid
*.ibbbhd.bid
icloudbypassservice.com
*.icloudbypassservice.com
infoaccess.online
*.infoaccess.online
inhsh.shop
*.inhsh.shop
inhsm.shop
*.inhsm.shop
injurylawyer707487.icu
*.injurylawyer707487.icu
w13728284.com
*.w13728284.com
w13728313.com
*.w13728313.com
w13729429.com
*.w13729429.com
wehe2rqsfwer.vip
*.wehe2rqsfwer.vip
windowslab.site
*.windowslab.site
wj75e.top
*.wj75e.top
wm9w1p8t.top
*.wm9w1p8t.top
wpzni.cc
*.wpzni.cc
wrc2025.icu
*.wrc2025.icu
wwwds8106.com
*.wwwds8106.com
xefuse.com
*.xefuse.com
ximk35wdrakm.com
*.ximk35wdrakm.com
xn--hg4a.com
*.xn--hg4a.com
Other domains in certificate