Open
Cached
·
3h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=themissingpiecestyle.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A7:91:DF:37:3A:A5:DB:A5:88:C3:21:C0:5D:F2:67:00:E0:C0:6A:3A:9F:22:63:9B:40:61:1C:C0:B2:D7:C3:23
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
onchainguy.com
*.onchainguy.com
agarbattis.in
*.agarbattis.in
deccanai.com
*.deccanai.com
nycforlebron.net
*.nycforlebron.net
ohioans4financialfreedom.com
*.ohioans4financialfreedom.com
onchainhorizon.com
*.onchainhorizon.com
openbase.co
*.openbase.co
palmspringsgalleria.com
*.palmspringsgalleria.com
philosapollo.com
*.philosapollo.com
playgame168bet.com
*.playgame168bet.com
playgame168ez.com
*.playgame168ez.com
playgame168vip.com
*.playgame168vip.com
playjustlikeyou.com
*.playjustlikeyou.com
portclydeseafoodco.com
*.portclydeseafoodco.com
portraitofchurchill.com
*.portraitofchurchill.com
portraitsforgood.com
*.portraitsforgood.com
power-nippon.com
*.power-nippon.com
procapitalist.org
*.procapitalist.org
prosperousapp.com
*.prosperousapp.com
renaso.com
*.renaso.com
rev-jen.com
*.rev-jen.com
reverse.bio
*.reverse.bio
rjbolands.com
*.rjbolands.com
schmidt09.com
*.schmidt09.com
search-online-psychological-test-mental-health-now-br.sbs
*.search-online-psychological-test-mental-health-now-br.sbs
second-hand-car-for-sale-in-all.sbs
*.second-hand-car-for-sale-in-all.sbs
security-guard-job-1t1w7w5d0n6.sbs
*.security-guard-job-1t1w7w5d0n6.sbs
setonnotes.info
*.setonnotes.info
signonsndiego.com
*.signonsndiego.com
smart3000.com
*.smart3000.com
solhts.com
*.solhts.com
sparkwolf.com
*.sparkwolf.com
sport.cfd
*.sport.cfd
sposatocostruzioni.com
*.sposatocostruzioni.com
spryhut.com
*.spryhut.com
stahl4congress.com
*.stahl4congress.com
swallowbistro.com
*.swallowbistro.com
techlyq.com
*.techlyq.com
tedbakercanadasale.com
*.tedbakercanadasale.com
telefon-search-ro.sbs
*.telefon-search-ro.sbs
thecodacollection.com
*.thecodacollection.com
thelibyaconference.com
*.thelibyaconference.com
themissingpiecestyle.com
*.themissingpiecestyle.com
thericecreamery.com
*.thericecreamery.com
zupeiping.cn
*.zupeiping.cn
Other domains in certificate