Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=okulary.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:AE:97:36:EA:71:F6:7B:AD:67:2C:5A:1C:BC:E1:6F:8B:94:07:A2:D0:92:23:A0:91:E5:16:9C:B7:3C:34:77
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
petsmart.it
*.petsmart.it
*.188.petsmart.it
*.o2.petsmart.it
15gaott.xyz
*.15gaott.xyz
*.laravel.15gaott.xyz
*.ww1.15gaott.xyz
*.ww25.15gaott.xyz
*.2aml.9ct2.shop
9ct2.shop
*.9ct2.shop
*.umaoxth1o.9ct2.shop
angelsrescue.com
*.angelsrescue.com
*.test.angelsrescue.com
barlassina.com
*.barlassina.com
*.mail.barlassina.com
*.bajar.chok.me
*.bhai.chok.me
*.bhar.chok.me
chok.me
*.chok.me
*.en.chok.me
*.ghnta.chok.me
*.ham.chok.me
*.hi.chok.me
*.kamra.chok.me
*.kanke.chok.me
*.mery.chok.me
*.milt.chok.me
*.ww25.chok.me
*.api.deportv.com
deportv.com
*.deportv.com
*.sitemaps.deportv.com
*.ww16.deportv.com
*.ww17.deportv.com
fugel.com
*.fugel.com
*.sitemap.fugel.com
*.ca.jipsy.net
*.capp.jipsy.net
*.com.jipsy.net
jipsy.net
*.jipsy.net
*.m.jipsy.net
*.mail.jipsy.net
*.mobile.jipsy.net
*.w-ww.jipsy.net
*.w.jipsy.net
*.webmail.jipsy.net
*.wwwwww.jipsy.net
kukaj.cz
*.kukaj.cz
*.sitemaps.kukaj.cz
*.articles.ladydragons.com
*.blog.ladydragons.com
*.club.ladydragons.com
*.hostmaster.ladydragons.com
ladydragons.com
*.ladydragons.com
*.net.ladydragons.com
*.old.ladydragons.com
*.random.ladydragons.com
*.rz.ladydragons.com
*.static.ladydragons.com
*.status.ladydragons.com
*.users.ladydragons.com
*.wiki.ladydragons.com
*.ww17.ladydragons.com
*.ww25.ladydragons.com
ohio-ai.com
*.ohio-ai.com
*.www.ohio-ai.com
*.forum.okulary.net
okulary.net
*.okulary.net
*.books.sheesley.com
*.its.sheesley.com
*.kazan.sheesley.com
*.locations.sheesley.com
*.mvideo.sheesley.com
*.pool.sheesley.com
*.search.sheesley.com
sheesley.com
*.sheesley.com
*.stores.sheesley.com
*.www.sheesley.com
Other domains in certificate