Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=alejandrito.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 29, 2026
Valid Until
July 28, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
ED:8D:5F:81:D8:0E:9C:DF:D7:56:3F:AC:0A:8C:2E:B9:8E:50:8F:C3:E6:0A:D2:EE:4C:6E:2C:18:CF:F0:96:91
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
soservice.com
*.soservice.com
016159x.cc
*.016159x.cc
2cd8257d4453a2f2.com
*.2cd8257d4453a2f2.com
alejandrito.com
*.alejandrito.com
*.forums.alejandrito.com
*.hostmaster.alejandrito.com
*.xn--cumpleaos-r6a.alejandrito.com
astrospy.com
*.astrospy.com
*.ww25.astrospy.com
cashgame168k.com
*.cashgame168k.com
cyber-security-services.sbs
*.cyber-security-services.sbs
dt9il7t.cc
*.dt9il7t.cc
duhay.com
*.duhay.com
e-e-a.com
*.e-e-a.com
elastoparts-dz.com
*.elastoparts-dz.com
electricvehicleinstallation.com
*.electricvehicleinstallation.com
elitecargocarriers.com
*.elitecargocarriers.com
emazae.com
*.emazae.com
eng--eng-leanbiome.com
*.eng--eng-leanbiome.com
eng-eng-freesugarpro.com
*.eng-eng-freesugarpro.com
enjoypillow.com
*.enjoypillow.com
exceedovation.com
*.exceedovation.com
f188b1331aae464a.com
*.f188b1331aae464a.com
fzglyy.cn
*.fzglyy.cn
galaxybetting.org
*.galaxybetting.org
garbogone.com
*.garbogone.com
greenlightc.com
*.greenlightc.com
hablani.in
*.hablani.in
mboldproteincatalyst.com
*.mboldproteincatalyst.com
njwf.org
*.njwf.org
nokuodsnb.cc
*.nokuodsnb.cc
online.plumbing
*.online.plumbing
ouboyule.net
*.ouboyule.net
ourigoler.com
*.ourigoler.com
second-hand-welding-machine.sbs
*.second-hand-welding-machine.sbs
seniorfostercare.org
*.seniorfostercare.org
shaanxidele.cn
*.shaanxidele.cn
sonoma.in
*.sonoma.in
sorenixtrader-9-2-edge.org
*.sorenixtrader-9-2-edge.org
soulgrowthpro.com
*.soulgrowthpro.com
soulware.vip
*.soulware.vip
spellodex.com
*.spellodex.com
springalliancehit.info
*.springalliancehit.info
start2finishconstruction.com
*.start2finishconstruction.com
stlouistowservice.com
*.stlouistowservice.com
truevaluemanufacturing.com
*.truevaluemanufacturing.com
tutiony.com
*.tutiony.com
Other domains in certificate