Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=portoditerra.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
December 17, 2025
Valid Until
March 17, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:8D:FA:41:79:CF:00:C8:41:91:17:7C:B8:7A:8E:35:1F:0B:64:7F:32:F9:48:BB:71:CA:2C:6C:C1:D3:86:82
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
f18.com
*.f18.com
*.25on4s7v.f18.com
*.68.f18.com
*.78.f18.com
*.a.f18.com
*.aic-a.f18.com
*.aic.f18.com
*.e3.f18.com
*.lthaic.f18.com
*.mes3.f18.com
*.s3moni-fz5.f18.com
*.vnapif.f18.com
*.wgr.f18.com
aepspanish.com
*.aepspanish.com
aheshopzone.co.uk
*.aheshopzone.co.uk
alpacasanctuary.co.uk
*.alpacasanctuary.co.uk
arf-hra.com
*.arf-hra.com
betflix5k.pro
*.betflix5k.pro
cantonstjohnmusic.co.uk
*.cantonstjohnmusic.co.uk
walletshop.co.in
*.walletshop.co.in
cotex.pro
*.cotex.pro
effloxintegrated.com
*.effloxintegrated.com
expresslogistic.uk
*.expresslogistic.uk
fastfinances.com.au
*.fastfinances.com.au
finchleycentralcabs.co.uk
*.finchleycentralcabs.co.uk
khanglobalconsultant.com
*.khanglobalconsultant.com
madhorsetransport.co.uk
*.madhorsetransport.co.uk
metalrainscreencladding.co.uk
*.metalrainscreencladding.co.uk
misty-morning-photography.co.uk
*.misty-morning-photography.co.uk
monadfdn.com
*.monadfdn.com
mtaautomotive.co.uk
*.mtaautomotive.co.uk
officialmasha.com
*.officialmasha.com
payizzy.com
*.payizzy.com
pesky-critters.co.uk
*.pesky-critters.co.uk
petplanto.com
*.petplanto.com
phoenixcampers.uk
*.phoenixcampers.uk
portoditerra.com
*.portoditerra.com
*.www.portoditerra.com
steveakerman.co.uk
*.steveakerman.co.uk
t0k-ii-knt-bsvr.click
*.t0k-ii-knt-bsvr.click
*.amp.xhammster.com
*.deu.xhammster.com
*.es.xhammster.com
*.ge.xhammster.com
*.id.xhammster.com
*.jp.xhammster.com
*.m.xhammster.com
*.pl2.xhammster.com
*.porn.xhammster.com
*.ru.xhammster.com
*.tr.xhammster.com
*.uk.xhammster.com
*.ww17.xhammster.com
*.ww38.xhammster.com
*.ww90.xhammster.com
*.www.xhammster.com
xhammster.com
*.xhammster.com
*.xxx.xhammster.com
Other domains in certificate