Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=latelier-dherve.fr
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 05, 2026
Valid Until
July 04, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D6:7E:B6:AF:73:0F:3B:99:01:3D:02:F5:73:23:84:FF:FA:14:8C:57:CD:22:BF:27:FF:52:05:E8:64:E3:0A:D9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
cheapgotels.com
*.cheapgotels.com
*.api.cheapgotels.com
*.helix.cheapgotels.com
*.jobs.cheapgotels.com
*.math.cheapgotels.com
44rtplebah4d.xyz
*.44rtplebah4d.xyz
bree.it
*.bree.it
buondentista.it
*.buondentista.it
cli.bet
*.cli.bet
domainnamepeople.com.au
*.domainnamepeople.com.au
*.random.domainnamepeople.com.au
*.wildcard.domainnamepeople.com.au
dpav.au
*.dpav.au
*.random.dpav.au
*.ww38.dpav.au
eidechse.de
*.eidechse.de
*.mail.eidechse.de
famouspaintings.com.au
*.famouspaintings.com.au
flixtr.nu
*.flixtr.nu
*.ww38.flixtr.nu
hispano.in
*.hispano.in
*.montreal.hispano.in
*.toronto.hispano.in
kwalumbeadvocates.com
*.kwalumbeadvocates.com
latelier-dherve.fr
*.latelier-dherve.fr
marketstat.online
*.marketstat.online
*.admin.mgmbanquet.com
*.checkout.mgmbanquet.com
*.mail.mgmbanquet.com
mgmbanquet.com
*.mgmbanquet.com
*.shop.mgmbanquet.com
*.ww1.mgmbanquet.com
*.ww7.mgmbanquet.com
*.com.ofort.pro
*.demo.ofort.pro
*.en.ofort.pro
*.eng.ofort.pro
ofort.pro
*.ofort.pro
ragestache.com
*.ragestache.com
*.random.ragestache.com
*.ww38.ragestache.com
schoolsystem.com
*.schoolsystem.com
*.uig.schoolsystem.com
secondwave.it
*.secondwave.it
sheepskin.it
*.sheepskin.it
shopbusiness.it
*.shopbusiness.it
shoppingnow.it
*.shoppingnow.it
subestrenos.com
*.subestrenos.com
*.icuww25.surfsharkk.com
surfsharkk.com
*.surfsharkk.com
*.ww25.surfsharkk.com
*.analytics.windowtreatments.it
*.demo.windowtreatments.it
*.metric.windowtreatments.it
*.report.windowtreatments.it
windowtreatments.it
*.windowtreatments.it
www-rosenheim.de
*.www-rosenheim.de
xn--flssigtransporte-kzb.de
*.xn--flssigtransporte-kzb.de
*.ws.zoompondy.com
*.wss.zoompondy.com
*.ww38.zoompondy.com
zoompondy.com
*.zoompondy.com
Other domains in certificate