Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=vehiclecoveragespot.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 22, 2026
Valid Until
May 23, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:E4:B7:4B:8D:28:57:22:5A:3D:EE:97:7A:88:08:69:DC:3C:73:48:46:EB:6E:64:93:FC:C0:2A:40:91:C6:B4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
onemedstore.com
*.onemedstore.com
mgfullmoving.com
*.mgfullmoving.com
mortiscausa.com
*.mortiscausa.com
naiejewels.com
*.naiejewels.com
offersjungle.net
*.offersjungle.net
ofilmywap.cc
*.ofilmywap.cc
*.ww1.ofilmywap.cc
*.ww12.ofilmywap.cc
*.ww2.ofilmywap.cc
*.ww3.ofilmywap.cc
*.ww4.ofilmywap.cc
*.ww5.ofilmywap.cc
*.ww6.ofilmywap.cc
*.ww7.ofilmywap.cc
*.beheer.ojasvifoundationharidwar.in
*.blog.ojasvifoundationharidwar.in
*.fioms.ojasvifoundationharidwar.in
*.ftp.ojasvifoundationharidwar.in
*.m.ojasvifoundationharidwar.in
ojasvifoundationharidwar.in
*.ojasvifoundationharidwar.in
*.sitemap.ojasvifoundationharidwar.in
*.sitemaps.ojasvifoundationharidwar.in
*.test.ojasvifoundationharidwar.in
*.tixcmhostmaster.ojasvifoundationharidwar.in
*.wp.ojasvifoundationharidwar.in
*.www.ojasvifoundationharidwar.in
*.yjpljapi.ojasvifoundationharidwar.in
outrank-seo.com
*.outrank-seo.com
pichunter2.xyz
*.pichunter2.xyz
pqcsec.com
*.pqcsec.com
prime-source.info
*.prime-source.info
printmarket3d.pl
*.printmarket3d.pl
redhotromance.com
*.redhotromance.com
reed.estate
*.reed.estate
reh.cc
*.reh.cc
rusell4u.com
*.rusell4u.com
sandiegocoastvacation.com
*.sandiegocoastvacation.com
setroka.xyz
*.setroka.xyz
therapyfordepression045830.icu
*.therapyfordepression045830.icu
topukmeds2u.com
*.topukmeds2u.com
turbo-casino.city
*.turbo-casino.city
ufa6666.club
*.ufa6666.club
uppercase.ltd
*.uppercase.ltd
uptimepuppet.com
*.uptimepuppet.com
*.dev.vehiclecoveragespot.com
vehiclecoveragespot.com
*.vehiclecoveragespot.com
vikingburger1.com
*.vikingburger1.com
vns978.cc
*.vns978.cc
vodka-bet.click
*.vodka-bet.click
w13723762.com
*.w13723762.com
xn--p84ap3f.com
*.xn--p84ap3f.com
xn--vusrb274q.com
*.xn--vusrb274q.com
xpj9801.cc
*.xpj9801.cc
zhtcare.com
*.zhtcare.com
zoukmachine.com
*.zoukmachine.com
Other domains in certificate