Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=runmanus.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 12, 2026
Valid Until
July 11, 2026
34 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:3F:0A:9A:00:12:B5:ED:3D:15:9D:89:35:56:CE:BA:BC:5A:04:13:A2:E8:6E:8B:71:C1:A1:52:03:B9:34:3A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
oyb.it
*.oyb.it
*.api.oyb.it
*.dddd.oyb.it
*.dev.oyb.it
*.remote.oyb.it
*.staging.oyb.it
alabamapowr.com
*.alabamapowr.com
*.start.alabamapowr.com
*.wholesale.alabamapowr.com
area51lifestyle.com
*.area51lifestyle.com
*.ww25.area51lifestyle.com
*.ww38.area51lifestyle.com
astroland.com
*.astroland.com
*.a.gracelandwindows.com
gracelandwindows.com
*.gracelandwindows.com
*.pipeline.gracelandwindows.com
*.random.gracelandwindows.com
*.ww16.gracelandwindows.com
pabenefits.com
*.pabenefits.com
*.2edc1041-a9c3-4d4e-bb25-8e40b61c70c7.phonefinds.com
*.admin.phonefinds.com
*.api.phonefinds.com
*.app.phonefinds.com
*.apps.phonefinds.com
*.assets.phonefinds.com
*.demo.phonefinds.com
*.dev.phonefinds.com
*.gateway.phonefinds.com
*.helpdesk.phonefinds.com
*.hostmaster.phonefinds.com
phonefinds.com
*.phonefinds.com
*.ra.phonefinds.com
*.remoto.phonefinds.com
*.rustore.phonefinds.com
*.test.phonefinds.com
*.www.phonefinds.com
*.app.poringa.bet
*.home.poringa.bet
*.hostmaster.poringa.bet
*.m.poringa.bet
*.mobile.poringa.bet
poringa.bet
*.poringa.bet
*.staging.poringa.bet
*.wap.poringa.bet
*.ww01.poringa.bet
*.ww38.poringa.bet
remote-radio-week.org
*.remote-radio-week.org
*.ww25.remote-radio-week.org
*.admin.runmanus.com
*.awjafrd.runmanus.com
*.console.runmanus.com
*.rd.runmanus.com
runmanus.com
*.runmanus.com
*.stg.runmanus.com
*.v1.runmanus.com
*.v2.runmanus.com
streamingtechnology.it
*.streamingtechnology.it
texasautogroup.com
*.texasautogroup.com
*.app.transcriber.info
*.cpcalendars.transcriber.info
*.cpcontacts.transcriber.info
*.hostmaster.transcriber.info
transcriber.info
*.transcriber.info
*.webdisk.transcriber.info
*.webmail.transcriber.info
*.ww1.transcriber.info
*.ww12.transcriber.info
*.38.unlvcsun.com
*.dev.unlvcsun.com
*.im.unlvcsun.com
*.kafka.unlvcsun.com
unlvcsun.com
*.unlvcsun.com
*.ww38.unlvcsun.com
varikoz.online
*.varikoz.online
Other domains in certificate