Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=lottabiologica.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 22, 2026
Valid Until
May 23, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
31:8F:66:0D:09:54:D2:BE:26:26:04:F0:1C:51:88:02:26:A8:A3:34:7E:E5:20:E2:B3:3F:B7:01:82:D9:F0:42
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
makeiaslive.com
*.makeiaslive.com
carbconsciousvegan.com
*.carbconsciousvegan.com
*.forum.carbconsciousvegan.com
*.bjchokev.juliuscasino88.com
*.dev.juliuscasino88.com
juliuscasino88.com
*.juliuscasino88.com
*.qa.juliuscasino88.com
*.staging.juliuscasino88.com
*.admin.lottabiologica.com
*.api.lottabiologica.com
*.bigdata.lottabiologica.com
*.dev.lottabiologica.com
*.flow.lottabiologica.com
lottabiologica.com
*.lottabiologica.com
*.metrics.lottabiologica.com
*.admin.oldtownlistings.com
*.api.oldtownlistings.com
*.demo.oldtownlistings.com
*.doqyaebdisk.oldtownlistings.com
*.fikfuv2.oldtownlistings.com
*.ftp.oldtownlistings.com
*.home.oldtownlistings.com
*.localhost.oldtownlistings.com
*.m.oldtownlistings.com
*.mail.oldtownlistings.com
*.mobile.oldtownlistings.com
oldtownlistings.com
*.oldtownlistings.com
*.portal.oldtownlistings.com
*.qa.oldtownlistings.com
*.secure.oldtownlistings.com
*.shop.oldtownlistings.com
*.stg.oldtownlistings.com
*.store.oldtownlistings.com
*.uat.oldtownlistings.com
*.v2.oldtownlistings.com
*.web.oldtownlistings.com
*.au7dqpjl9w.qawggwk.com
*.m0.qawggwk.com
*.m1.qawggwk.com
*.m10.qawggwk.com
*.m12.qawggwk.com
*.m16.qawggwk.com
*.m17.qawggwk.com
*.m18.qawggwk.com
*.m19.qawggwk.com
*.m2.qawggwk.com
*.m21.qawggwk.com
*.m23.qawggwk.com
*.m25.qawggwk.com
*.m28.qawggwk.com
*.m30.qawggwk.com
*.m34.qawggwk.com
*.m38.qawggwk.com
*.m4.qawggwk.com
*.m40.qawggwk.com
*.m41.qawggwk.com
*.m42.qawggwk.com
*.m7.qawggwk.com
*.m8.qawggwk.com
*.m9.qawggwk.com
qawggwk.com
*.qawggwk.com
*.ww25.qawggwk.com
*.zjc79vwkcs.qawggwk.com
*.demo.sexeex.com
sexeex.com
*.sexeex.com
*.admin.superbowlgpt.com
*.api.superbowlgpt.com
*.assets.superbowlgpt.com
*.extranet.superbowlgpt.com
*.hostmaster.superbowlgpt.com
*.mail.superbowlgpt.com
*.members.superbowlgpt.com
*.shop.superbowlgpt.com
superbowlgpt.com
*.superbowlgpt.com
*.test.superbowlgpt.com
*.www.superbowlgpt.com
*.cn.tkcp.cm
*.dashboard.tkcp.cm
*.m.tkcp.cm
*.poc.tkcp.cm
tkcp.cm
*.tkcp.cm
Other domains in certificate