Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hjglamping.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 25, 2026
Valid Until
May 26, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:E7:A5:D2:72:0A:1C:7B:B0:16:F4:2A:57:39:58:25:11:28:06:23:F2:2F:3C:9B:9D:99:1B:C6:31:5A:83:01
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
nonsyn.com
*.nonsyn.com
*.sitemaps.nonsyn.com
8x2uu.com
*.8x2uu.com
ajptv.com
*.ajptv.com
atnotarylivescan.com
*.atnotarylivescan.com
baddiiehub.com
*.baddiiehub.com
belanjalaptop.com
*.belanjalaptop.com
*.jpmjwcpanel.belanjalaptop.com
*.staging.belanjalaptop.com
*.staging1.belanjalaptop.com
bloodtestconsultancy.com
*.bloodtestconsultancy.com
bv1.tech
*.bv1.tech
*.hostmaster.bv1.tech
*.ww25.bv1.tech
*.bus.comillaexpress.com
*.buslover.comillaexpress.com
*.com.comillaexpress.com
comillaexpress.com
*.comillaexpress.com
*.food.comillaexpress.com
*.foodx.comillaexpress.com
*.info.comillaexpress.com
*.6441056b613c32a9.contentmoderatorsettlement.com
contentmoderatorsettlement.com
*.contentmoderatorsettlement.com
daftarpucuk4d.com
*.daftarpucuk4d.com
englishinbarnes.co.uk
*.englishinbarnes.co.uk
*.mail.englishinbarnes.co.uk
*.3g.gmsir.online
*.dan.gmsir.online
gmsir.online
*.gmsir.online
*.news.gmsir.online
*.portal.gmsir.online
*.postmaster.gmsir.online
*.vpn.gmsir.online
*.web.gmsir.online
hd-rezka.cc
*.hd-rezka.cc
*.ww25.hd-rezka.cc
*.ww38.hd-rezka.cc
hjglamping.com
*.hjglamping.com
kuleana.au
*.kuleana.au
luxurycreditoffers.com
*.luxurycreditoffers.com
mupedia.net
*.mupedia.net
*.old.ottplus.co
ottplus.co
*.ottplus.co
*.www.ottplus.co
phonampdx.com
*.phonampdx.com
premiernotaryllc.com
*.premiernotaryllc.com
rangayana.org
*.rangayana.org
rothersaypension.com
*.rothersaypension.com
safangktv.com
*.safangktv.com
*.hw.shunrui.store
shunrui.store
*.shunrui.store
*.us1.shunrui.store
southlandcu.com
*.southlandcu.com
sty1001.fr
*.sty1001.fr
widgetfinacial.com
*.widgetfinacial.com
xminus.org
*.xminus.org
yw763.com
*.yw763.com
yychinesethaifood.com
*.yychinesethaifood.com
Other domains in certificate