Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=lavashline.site
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 13, 2026
Valid Until
July 12, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
86:1D:F9:F9:0C:34:1D:D3:63:C2:CB:FD:88:C8:DA:44:F9:A2:3F:67:18:32:FD:9B:E2:F5:DB:08:9D:F9:B1:99
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
nokiae50.info
*.nokiae50.info
*.webmail.nokiae50.info
*.app.clxr.io
clxr.io
*.clxr.io
*.demo.clxr.io
*.gtobudemo.clxr.io
*.0a5da4cb-c598-4848-b1ab-2f0393b259f3.dy-baiaopg.me
dy-baiaopg.me
*.dy-baiaopg.me
*.d7247b71-d4f0-44f1-9458-68f862bb41a0.eleosflow.org
eleosflow.org
*.eleosflow.org
*.owa.eleosflow.org
f4fs.org
*.f4fs.org
*.ww38.f4fs.org
lavashline.site
*.lavashline.site
mg2888.com
*.mg2888.com
*.rustore.mg2888.com
*.612047ec-3016-4dde-a773-6088a74073ef.nfts.onl
*.admin.nfts.onl
*.alpha.nfts.onl
*.api.nfts.onl
*.app.nfts.onl
*.bot.nfts.onl
*.dev.nfts.onl
*.ecommerce.nfts.onl
*.local.nfts.onl
*.m.nfts.onl
nfts.onl
*.nfts.onl
*.phzyfm.nfts.onl
*.staging.nfts.onl
*.store.nfts.onl
*.test.nfts.onl
*.ws.nfts.onl
openingsbargains.click
*.openingsbargains.click
*.ww25.openingsbargains.click
*.ww38.openingsbargains.click
owleads.online
*.owleads.online
portafoliodeservicios.com
*.portafoliodeservicios.com
*.1332220d-9ce3-4a57-9f93-055302c43ae9.shopglobalmarket.shop
*.52ddd466-2fc6-43ad-b0ee-5c68a409a971.shopglobalmarket.shop
*.5d5867b2-0a4f-4246-875c-94a305883677.shopglobalmarket.shop
*.8fca7423-3e9e-4619-9248-fa4f47407c5c.shopglobalmarket.shop
*.admin.shopglobalmarket.shop
*.api.shopglobalmarket.shop
*.app.shopglobalmarket.shop
*.assets.shopglobalmarket.shop
*.cd957177-0f33-422d-8847-1474de16558d.shopglobalmarket.shop
*.demo.shopglobalmarket.shop
*.dev.shopglobalmarket.shop
*.hostmaster.shopglobalmarket.shop
*.lwaonapi.shopglobalmarket.shop
*.news.shopglobalmarket.shop
*.portainer.shopglobalmarket.shop
shopglobalmarket.shop
*.shopglobalmarket.shop
*.staging.shopglobalmarket.shop
*.test.shopglobalmarket.shop
*.vdi.shopglobalmarket.shop
*.m.thetrusttest.com
*.mailserver.thetrusttest.com
*.sitemap.thetrusttest.com
*.sitemaps.thetrusttest.com
thetrusttest.com
*.thetrusttest.com
tplchs4.cyou
*.tplchs4.cyou
*.hostmaster.truckinfo.be
truckinfo.be
*.truckinfo.be
*.www.truckinfo.be
*.blog.unbankatm.com
*.dev.unbankatm.com
unbankatm.com
*.unbankatm.com
*.a.zs8819.com
*.admin.zs8819.com
*.rustore.zs8819.com
*.staging.zs8819.com
zs8819.com
*.zs8819.com
Other domains in certificate