Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=aurainnrooms.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 09, 2026
Valid Until
July 08, 2026 51 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:31:C4:00:56:BF:86:D8:91:4E:E2:6E:2B:37:7A:E6:DE:26:93:C1:25:85:5F:11:B9:1C:AB:29:E5:D1:83:2D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
michaeljgorman.net *.michaeljgorman.net *.bewww.michaeljgorman.net *.dewww.michaeljgorman.net *.huwww.michaeljgorman.net *.nowww.michaeljgorman.net *.ww38.michaeljgorman.net

Other domains in certificate

arbetinehmeronline.de *.arbetinehmeronline.de *.ww25.arbetinehmeronline.de
aurainnrooms.com *.aurainnrooms.com
*.0c07470b-f2bb-45b4-bfff-cb95f65ac13e.bodybuildingsponsor.com *.app.bodybuildingsponsor.com bodybuildingsponsor.com *.bodybuildingsponsor.com *.cloud.bodybuildingsponsor.com *.dev.bodybuildingsponsor.com *.docs.bodybuildingsponsor.com *.external.bodybuildingsponsor.com *.hostmaster.bodybuildingsponsor.com *.my.bodybuildingsponsor.com *.public.bodybuildingsponsor.com *.rd.bodybuildingsponsor.com *.rds.bodybuildingsponsor.com *.rdweb.bodybuildingsponsor.com *.remote.bodybuildingsponsor.com *.sharepoint.bodybuildingsponsor.com *.www.bodybuildingsponsor.com
enspa.eu *.enspa.eu
erasmus-class.eu *.erasmus-class.eu
ericazlin.eu *.ericazlin.eu
erida.eu *.erida.eu
*.admin.homepages.it *.api.homepages.it *.app.homepages.it homepages.it *.homepages.it
*.inter.kikea.com kikea.com *.kikea.com *.random.kikea.com
marie-curie2012.eu *.marie-curie2012.eu
massage-erotique-vichy.eu *.massage-erotique-vichy.eu
plasmazone.eu *.plasmazone.eu
redstarpoker23.eu *.redstarpoker23.eu
spotv.biz *.spotv.biz *.ww25.spotv.biz
treinamento.eu *.treinamento.eu
*.mail.unitymagic.com unitymagic.com *.unitymagic.com
unpc.eu *.unpc.eu
upvid.eu *.upvid.eu
wearstore.eu *.wearstore.eu
*.staging.wildmountainwax.com wildmountainwax.com *.wildmountainwax.com
woatrcgsdl.net *.woatrcgsdl.net *.ww38.woatrcgsdl.net
worlduniversitybd.info *.worlduniversitybd.info
xedix.eu *.xedix.eu
xxxtun.pro *.xxxtun.pro
xzoom.eu *.xzoom.eu
yungage.online *.yungage.online
zany.life *.zany.life
zielonaoliwka.eu *.zielonaoliwka.eu
zuhausezen.de *.zuhausezen.de