Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=dwidigitalcameras.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 01, 2026
Valid Until
April 01, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3E:0F:34:C6:69:A5:73:3D:45:5D:0D:9C:1C:8A:89:E5:34:6A:03:FE:E3:EE:99:D2:2F:91:1C:A4:F3:A9:BE:9B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
74 domains
morpheusar.com
*.morpheusar.com
*.cartoon-cars.morpheusar.com
*.spinosaurus.morpheusar.com
*.velociraptor.morpheusar.com
animeshqip.online
*.animeshqip.online
*.kafka.animeshqip.online
bayraktar.store
*.bayraktar.store
*.mail.bayraktar.store
*.www.bayraktar.store
bestshop-bd.xyz
*.bestshop-bd.xyz
cheques-vacances-connect.com
*.cheques-vacances-connect.com
*.random.cheques-vacances-connect.com
*.ww25.cheques-vacances-connect.com
djlubs.com
*.djlubs.com
*.es.djlubs.com
*.fr.djlubs.com
*.ht.djlubs.com
dwidigitalcameras.com.au
*.dwidigitalcameras.com.au
*.www.dwidigitalcameras.com.au
headshots.au
*.headshots.au
*.10.kinoihoopt.shop
*.12.kinoihoopt.shop
*.13.kinoihoopt.shop
*.14.kinoihoopt.shop
*.17.kinoihoopt.shop
*.18.kinoihoopt.shop
*.19.kinoihoopt.shop
*.2.kinoihoopt.shop
*.21.kinoihoopt.shop
*.4.kinoihoopt.shop
*.7.kinoihoopt.shop
*.9.kinoihoopt.shop
kinoihoopt.shop
*.kinoihoopt.shop
languagecourse.com.au
*.languagecourse.com.au
lumiflixapp.online
*.lumiflixapp.online
*.ww25.lumiflixapp.online
mtsp5wgl.xyz
*.mtsp5wgl.xyz
*.ww16.mtsp5wgl.xyz
*.admin.redditsports.cc
*.api.redditsports.cc
*.app.redditsports.cc
*.assets.redditsports.cc
*.blog.redditsports.cc
*.dev.redditsports.cc
*.live.redditsports.cc
*.live1.redditsports.cc
*.mail.redditsports.cc
redditsports.cc
*.redditsports.cc
*.test.redditsports.cc
*.ww25.redditsports.cc
*.api.zqiet.com
*.dev.zqiet.com
*.gate.zqiet.com
*.insight.zqiet.com
*.jenkins.zqiet.com
*.mail6.zqiet.com
*.mailer.zqiet.com
*.npl.zqiet.com
*.www.zqiet.com
zqiet.com
*.zqiet.com
Other domains in certificate