Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=blackbearhotels.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 27, 2026
Valid Until
August 25, 2026
63 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
77:52:AC:CC:17:B9:ED:C9:F2:3D:29:C1:13:2C:AB:57:2D:6A:4F:02:02:A3:F1:D1:74:DF:C0:11:3D:B0:DA:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
linklove12.com
*.linklove12.com
blackbearhotels.com
*.blackbearhotels.com
cazinovulkan.sbs
*.cazinovulkan.sbs
claritytravelquest.xyz
*.claritytravelquest.xyz
gtakopi.com
*.gtakopi.com
livecasinobest.top
*.livecasinobest.top
maruay88.bet
*.maruay88.bet
my40001.com
*.my40001.com
naturspast.com
*.naturspast.com
nutrelixi.com
*.nutrelixi.com
onlinecasinoproviders.pro
*.onlinecasinoproviders.pro
pgtoto.com
*.pgtoto.com
poupatempobr.info
*.poupatempobr.info
powertrades-ca.com
*.powertrades-ca.com
quantumexpertinvestment.com
*.quantumexpertinvestment.com
ruffwearsale.com
*.ruffwearsale.com
ruflex.info
*.ruflex.info
salesamplifier.pl
*.salesamplifier.pl
soefx.cc
*.soefx.cc
spribegaming58.click
*.spribegaming58.click
spribegaming65.click
*.spribegaming65.click
streamhubcentral.sbs
*.streamhubcentral.sbs
streesaboutthetruth.com
*.streesaboutthetruth.com
szshuangzi.com
*.szshuangzi.com
t-turunen.org
*.t-turunen.org
*.sitemap.techplatform.online
techplatform.online
*.techplatform.online
themrprimestore.com
*.themrprimestore.com
topornews.com
*.topornews.com
treisterconsulting.com
*.treisterconsulting.com
truyenqqmoi.com
*.truyenqqmoi.com
universalconnecthub.com
*.universalconnecthub.com
untoil.cn
*.untoil.cn
untung99rtpcuan.com
*.untung99rtpcuan.com
untung99spin.com
*.untung99spin.com
uoekk.com
*.uoekk.com
uollz.my
*.uollz.my
uplifterinc.org
*.uplifterinc.org
ursok.my
*.ursok.my
w13726712.com
*.w13726712.com
w13729346.com
*.w13729346.com
wiadomosci24-hour.net
*.wiadomosci24-hour.net
wldlg.my
*.wldlg.my
xq23.vip
*.xq23.vip
yolveno.com
*.yolveno.com
Other domains in certificate