Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=haveyourfun.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BE:24:EB:06:4D:9C:0F:87:D1:B2:1F:AE:F6:1C:38:37:00:16:FB:EF:06:7B:32:19:77:7D:FF:0E:E2:81:95:CD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
nurseries.us
*.nurseries.us
*.sitemap.nurseries.us
*.www.nurseries.us
*.dashboard.gmtec.top
gmtec.top
*.gmtec.top
*.secure.gmtec.top
*.tnzle0.gmtec.top
*.cphdsshop.haveyourfun.com
haveyourfun.com
*.haveyourfun.com
*.test.haveyourfun.com
*.host.klio.in
*.isip-api.klio.in
*.isip-app.klio.in
*.isip.klio.in
klio.in
*.klio.in
*.ns2.klio.in
*.wildcard.klio.in
*.backup.krnl.shop
*.ctymzakj.krnl.shop
*.dashboard.krnl.shop
*.dev.krnl.shop
*.dev1redash.krnl.shop
*.docs.krnl.shop
krnl.shop
*.krnl.shop
*.ojtodu.krnl.shop
*.owa.krnl.shop
*.qa.krnl.shop
*.redash.krnl.shop
*.stg.krnl.shop
*.vndlfdocs.krnl.shop
*.68besqudoh.liujingyao.com
liujingyao.com
*.liujingyao.com
*.www.liujingyao.com
*.anti-spam.m-ds.com
*.anyconnect.m-ds.com
*.apps.m-ds.com
*.cloud.m-ds.com
*.connect.m-ds.com
*.lists.m-ds.com
*.login.m-ds.com
m-ds.com
*.m-ds.com
*.m.m-ds.com
*.mail.m-ds.com
*.pop3.m-ds.com
*.portal.m-ds.com
*.sitemap.m-ds.com
*.wildcard.m-ds.com
*.www.m-ds.com
*.cloud.makeherwet.com
*.m.makeherwet.com
makeherwet.com
*.makeherwet.com
*.rd.makeherwet.com
*.rds.makeherwet.com
*.rdweb.makeherwet.com
*.remote.makeherwet.com
*.www.makeherwet.com
moonhelium3.com
*.moonhelium3.com
*.pevyqp.moonhelium3.com
ns77.sbs
*.ns77.sbs
*.tnm506.ns77.sbs
*.app.patton.me
*.david.patton.me
*.ftp.patton.me
*.joes.patton.me
*.le.patton.me
*.m.patton.me
*.me.patton.me
*.openpgpkey.patton.me
patton.me
*.patton.me
*.pop.patton.me
*.remote.patton.me
*.www.patton.me
*.orapy.pinnaclefirmholdingltd.com
pinnaclefirmholdingltd.com
*.pinnaclefirmholdingltd.com
*.ip331w.realhomeuppro.com
realhomeuppro.com
*.realhomeuppro.com
Other domains in certificate