Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pricelow.space
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 11, 2026
Valid Until
May 12, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D4:0F:B8:52:1D:40:2B:8F:44:E4:99:73:86:A6:62:4C:60:56:A3:89:84:AB:89:AA:9D:22:04:26:49:A8:ED:2C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
orumieh.com
*.orumieh.com
*.sitemap.orumieh.com
*.store.orumieh.com
*.wiki.orumieh.com
56280.top
*.56280.top
*.d.56280.top
*.kac0t.56280.top
*.lkzdx.56280.top
*.me7q1.56280.top
*.o1ghs.56280.top
*.y9zz2.56280.top
*.1487.b14872192.com
b14872192.com
*.b14872192.com
berkshirehome.com
*.berkshirehome.com
*.sitemaps.berkshirehome.com
bonus-incrivel.store
*.bonus-incrivel.store
brisbanewindowcleaners.au
*.brisbanewindowcleaners.au
cambridgeroofingpros.com
*.cambridgeroofingpros.com
*.sitemaps.cambridgeroofingpros.com
ddoseoo7.com
*.ddoseoo7.com
edumentor.pro
*.edumentor.pro
*.hostmaster.edumentor.pro
*.rustore.edumentor.pro
*.assets.eenaragaronioasdalero.shop
eenaragaronioasdalero.shop
*.eenaragaronioasdalero.shop
father168.com
*.father168.com
*.do.fotno.xyz
fotno.xyz
*.fotno.xyz
*.m.fotno.xyz
*.vv.fotno.xyz
gccraftconvention.com
*.gccraftconvention.com
moji.live
*.moji.live
*.m.naturbestattungen.com
naturbestattungen.com
*.naturbestattungen.com
*.wiki.naturbestattungen.com
olpc-deutschland.de
*.olpc-deutschland.de
*.wiki.olpc-deutschland.de
outontop.com
*.outontop.com
*.sitemap.outontop.com
*.ww25.outontop.com
pricelow.space
*.pricelow.space
recklessness.sbs
*.recklessness.sbs
recluselywild-haired.sbs
*.recluselywild-haired.sbs
resloeri.website
*.resloeri.website
*.ww25.resloeri.website
ruch.io
*.ruch.io
*.ww25.ruch.io
rvrentals.au
*.rvrentals.au
selectioni.com
*.selectioni.com
*.sitemap.selectioni.com
shofar.world
*.shofar.world
shopmuddymatt.com
*.shopmuddymatt.com
*.ww16.shopmuddymatt.com
*.ww25.shopmuddymatt.com
*.ww38.shopmuddymatt.com
*.cpanel.tapblog.xyz
tapblog.xyz
*.tapblog.xyz
*.ww25.tapblog.xyz
*.ww38.tapblog.xyz
*.bet.tipobet5279.com
*.m.tipobet5279.com
tipobet5279.com
*.tipobet5279.com
Other domains in certificate