Open
Cached
·
just now
77/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=www.lexcraft.uk
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
April 06, 2026
Valid Until
July 05, 2026
47 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DA:98:BB:6E:A6:AD:FA:51:EB:74:44:22:64:52:11:79:96:5A:4F:38:08:5B:AA:9A:F6:D0:AA:4C:F1:A7:7C:FE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
nelkastore.com
www.abc974.com
ace-public-live.activ8games.com
akhlaq.work
about.alfonslange.se
shopify.amfluenceagency.com
apidash.dev
avalara-india.com
www.aylwardsolutions.ie
api.beaconoms.com
bednarz.design
bergamotto.ru
google.id.bettercorp.co.za
link.bharatcash.com
bisipujon-iot.cloud
entrerios.bracelit.es
app.brickell.imb.br
magda3.brinias.eu
callaapp.com
rebuyslovakia-uat-backoffice.cbdata.sk
cheapestcarrecovery.uk
cosmodrome.dev
countsbook.com
www.cskarch.com
auth.decorum.work
app.v3.dentasnap.de
www.derehavered.co.il
uniben.dev.portalcliente.divitech.com.br
doctorategown.com
drindhira.com
due-menu.com
www.e-labor.co.kr
afe2022.eef.or.th
auth.ce.elcoyote.dk
elemten.com
erbfirsts.com
bid-deco-auth.ergodic.games
erimasocceracademy.com
reservoir.eumplus.kr
festivalab.de
hm-dev.fewkes.net.pl
www.firsttelecom.co.th
fitss.co.za
superdash.flutter.dev
handmadeblade.com
portal.hubfit.com.br
doqq.hwlee.xyz
www.insanecrew.net
www.jeanmaison.com
joshandnikkispain.uk
antriansehatku.kurose.id
www.lectonia.dev
www.lexcraft.uk
www.lionrocket.co.kr
tipnational.loadsure.net
dash.lumedeodorant.com
magiqware.com
votematch.mediage.org
inventory-management.merkle.dev
millworksuite.com
www.modulecredit.com
lezen.mooky.app
northeosoftcare.in
www.numchaihotel.com
onelynk.web.id
otsukare.se
pamm.design
onmoind.staging.platformkids.com
showgo.playground.style
go.portalcoj.com
purzey.com
refinebio.surf
releasetask.com
robyns.work
emy.rosalie.dev
sahalive.com
www.saja.se
www.samaxengineering.com
www.sbground.kr
wiki.scephiro.me
prodtveyes.service-unicepta.de
simplegoaltracker.com
www.soyfermartinez.com
diginext.tatvacare.in
www.techmoju.com
threedotsfilmstudio.com
tony-trade.com
toponespa.com
techdocs.toppangravity.com
tradnite.in
pv-bitfinex.vardas.ca
app.voki.net.br
safeapp.walshasesores.com.ar
webzeno.in
worldspahurghada.com
refer.xpresscure.com
ymmv.flights
www.ukrop.a.zajicova.com
game.zenselect.jp
zilicontechnologies.com
Other domains in certificate