Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=withasinglestep.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 15, 2026
Valid Until
July 14, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
85:A7:39:7D:C8:2A:9B:0D:70:09:B5:21:05:DD:EC:9D:4C:80:28:A1:FB:6D:6D:79:68:99:FB:2A:B8:02:C1:C6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
minbao.com
*.minbao.com
*.k.minbao.com
4skis.com
*.4skis.com
aashritha.com
*.aashritha.com
baracks.com
*.baracks.com
belflower.com
*.belflower.com
benvin.com
*.benvin.com
bilderammer.com
*.bilderammer.com
bloomstogo.com
*.bloomstogo.com
brunache.com
*.brunache.com
colchoneros.com
*.colchoneros.com
conceptismo.com
*.conceptismo.com
corneliussen.com
*.corneliussen.com
*.steve.corneliussen.com
dhanwanthari.com
*.dhanwanthari.com
doingbusinessonline.com
*.doingbusinessonline.com
drobik.com
*.drobik.com
elbek.com
*.elbek.com
elchert.com
*.elchert.com
eulalio.com
*.eulalio.com
fantasmal.com
*.fantasmal.com
forumdominio.com
*.forumdominio.com
gussoni.com
*.gussoni.com
kivisto.com
*.kivisto.com
kizomba.com
*.kizomba.com
linstad.com
*.linstad.com
litescaping.com
*.litescaping.com
muggia.com
*.muggia.com
mywestvalley.com
*.mywestvalley.com
nekui.com
*.nekui.com
saltes.com
*.saltes.com
soekmotoroptimering.com
*.soekmotoroptimering.com
suiko.com
*.suiko.com
suyolu.com
*.suyolu.com
templemormon.com
*.templemormon.com
thesumma.com
*.thesumma.com
tiamoitalia.com
*.tiamoitalia.com
tokoi.com
*.tokoi.com
unitedbasketball.com
*.unitedbasketball.com
utelys.com
*.utelys.com
videoscristianos.com
*.videoscristianos.com
vincedelmonte.com
*.vincedelmonte.com
vinhson.com
*.vinhson.com
withasinglestep.com
*.withasinglestep.com
zeeen.com
*.zeeen.com
zulick.com
*.zulick.com
Other domains in certificate