Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nestlesignatures.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:52:CD:80:1E:1B:69:D0:67:86:8B:47:F9:62:97:52:65:5A:47:B4:A4:DD:87:9C:63:D8:AF:2B:42:31:3A:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
packagesdeliver.com
*.packagesdeliver.com
*.cdn.fatimaabdi.com
fatimaabdi.com
*.fatimaabdi.com
*.centigradethemovie.indiasschools.com
indiasschools.com
*.indiasschools.com
*.m.malawisafaris.com
malawisafaris.com
*.malawisafaris.com
nestlesignatures.com
*.nestlesignatures.com
nioaragaronisdaealtrl.cyou
*.nioaragaronisdaealtrl.cyou
nq19.top
*.nq19.top
nsygdq.com
*.nsygdq.com
oattavel.com
*.oattavel.com
obvz4f.click
*.obvz4f.click
ocakayi.cfd
*.ocakayi.cfd
ok8bet.fun
*.ok8bet.fun
oldromz.xyz
*.oldromz.xyz
omnishirttrendy.com
*.omnishirttrendy.com
on35.com
*.on35.com
onlinegames.win
*.onlinegames.win
onvpjg.bid
*.onvpjg.bid
onzufx.forsale
*.onzufx.forsale
opacs.org
*.opacs.org
orgasmwork.com
*.orgasmwork.com
ouluglass.com
*.ouluglass.com
oxfez.cc
*.oxfez.cc
oxford.rent
*.oxford.rent
oxymoronic.org
*.oxymoronic.org
pasaragaroniiotealre.cyou
*.pasaragaroniiotealre.cyou
passionatefoodmagic.food
*.passionatefoodmagic.food
passiveincomez.com
*.passiveincomez.com
patentpapers.com
*.patentpapers.com
payautomated.com
*.payautomated.com
perfectlandingpages.agency
*.perfectlandingpages.agency
perfectpixelnepal.com
*.perfectpixelnepal.com
personalsimulator.com
*.personalsimulator.com
pf5bd3jg.top
*.pf5bd3jg.top
pgz777.one
*.pgz777.one
picorivera.net
*.picorivera.net
pigselectronics.com
*.pigselectronics.com
pizzeriadagaetano1964.com
*.pizzeriadagaetano1964.com
pkaaragnmonioasdalandz.cyou
*.pkaaragnmonioasdalandz.cyou
play-chaos-cavern.xyz
*.play-chaos-cavern.xyz
play-cobalt-venture.xyz
*.play-cobalt-venture.xyz
play-titan-nexus.xyz
*.play-titan-nexus.xyz
playconcrete.com
*.playconcrete.com
*.control.servuporno.com
servuporno.com
*.servuporno.com
Other domains in certificate