76/100 SECURITY SCORE

Certificate Information

Subject
CN=searchersocial.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:7C:20:FB:76:2B:50:DE:56:79:DB:1D:49:04:B8:C3:F0:D6:85:25:70:0D:0F:B5:3F:BB:06:EC:07:DC:D4:FF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
singleblast.com *.singleblast.com *.app.singleblast.com *.assets.singleblast.com *.demo.singleblast.com *.dev.singleblast.com *.e6a22548-c101-45fe-ad5c-47ba4824d4a5.singleblast.com *.mail.singleblast.com *.test.singleblast.com *.xusfxdev.singleblast.com

Other domains in certificate

79132.love *.79132.love *.love.79132.love
autogleamdet.com *.autogleamdet.com *.rustore.autogleamdet.com
bigcholdings.com *.bigcholdings.com *.mail.bigcholdings.com
chinocrestado.com *.chinocrestado.com *.cpcalendars.chinocrestado.com *.cpcontacts.chinocrestado.com *.mail.chinocrestado.com *.webdisk.chinocrestado.com
dragnodes.store *.dragnodes.store *.ww25.dragnodes.store
*.comune.fracoisesaget.com *.es.fracoisesaget.com fracoisesaget.com *.fracoisesaget.com *.job.fracoisesaget.com *.jobs.fracoisesaget.com *.mx.fracoisesaget.com *.secure.fracoisesaget.com *.store.fracoisesaget.com *.ww25.fracoisesaget.com *.ww38.fracoisesaget.com
*.etrealestate.indtimes.com indtimes.com *.indtimes.com *.jatim.indtimes.com *.life.indtimes.com *.movies.indtimes.com *.nav.indtimes.com *.timesofindia.indtimes.com *.ushjeimapmail.indtimes.com *.ww25.indtimes.com
*.mail.reduto.me reduto.me *.reduto.me
*.m.reverseauction.in *.mta-sts.reverseauction.in reverseauction.in *.reverseauction.in *.www.reverseauction.in
*.mail.searchersocial.com searchersocial.com *.searchersocial.com
*.admin.tacitus.it *.analytic.tacitus.it *.analytics.tacitus.it *.api.tacitus.it *.app.tacitus.it *.backend.tacitus.it *.bi.tacitus.it *.dash.tacitus.it *.dev.tacitus.it *.development.tacitus.it *.hostmaster.tacitus.it *.imap.tacitus.it *.mail.tacitus.it *.metrics.tacitus.it *.portal.tacitus.it *.postmaster.tacitus.it *.rds.tacitus.it *.rdweb.tacitus.it *.redash.tacitus.it *.remote.tacitus.it *.report.tacitus.it *.reports.tacitus.it *.sslvpn.tacitus.it *.staging.tacitus.it *.superset.tacitus.it tacitus.it *.tacitus.it *.webmail.tacitus.it *.www.tacitus.it