Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=villajalon.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:1B:90:B1:D6:48:B8:5F:D2:CB:55:5A:B6:B4:0D:57:26:A2:D1:A3:14:D3:2C:66:85:6F:49:25:BF:74:D2:CF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
vonve.com
*.vonve.com
wayangspinbaru.ind.in
*.wayangspinbaru.ind.in
uqnn85.net
*.uqnn85.net
urbangardeningprojects.xyz
*.urbangardeningprojects.xyz
urbantravelquest.live
*.urbantravelquest.live
useaiassistant24.com
*.useaiassistant24.com
usergenerated.it
*.usergenerated.it
uuu3973.top
*.uuu3973.top
vam7d5.net
*.vam7d5.net
vasaengineering.com
*.vasaengineering.com
vehiclerepairs.it
*.vehiclerepairs.it
venturecovepro.shop
*.venturecovepro.shop
venumbudapest.com
*.venumbudapest.com
vesuviani.it
*.vesuviani.it
vibranttraveldestinations.xyz
*.vibranttraveldestinations.xyz
vigora.one
*.vigora.one
villajalon.com
*.villajalon.com
vip18677rr.shop
*.vip18677rr.shop
vipii18677.shop
*.vipii18677.shop
visitflorina.com
*.visitflorina.com
vremea.it
*.vremea.it
vv3711.com
*.vv3711.com
vv3733.com
*.vv3733.com
watchpornk.com
*.watchpornk.com
waterneedle.net
*.waterneedle.net
watevermusic.com
*.watevermusic.com
webmarketingintelligence.it
*.webmarketingintelligence.it
webrajawali.com
*.webrajawali.com
weddingschicstyle.beauty
*.weddingschicstyle.beauty
weddingscolorfulsmile.beauty
*.weddingscolorfulsmile.beauty
weddingstudios.it
*.weddingstudios.it
wehpfh.com
*.wehpfh.com
westock.co
*.westock.co
wewish.it
*.wewish.it
wficjf.pro
*.wficjf.pro
wh17zn.shop
*.wh17zn.shop
whisperer.it
*.whisperer.it
wiling.shop
*.wiling.shop
wljcyhuwxoppnpgydguv.com
*.wljcyhuwxoppnpgydguv.com
wnpz499.org
*.wnpz499.org
woaiheniao.com
*.woaiheniao.com
workhome.it
*.workhome.it
wpvskazj.xyz
*.wpvskazj.xyz
wuxianzy.xyz
*.wuxianzy.xyz
ww4.com
*.ww4.com
Other domains in certificate