Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=okulary.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
19:AE:97:36:EA:71:F6:7B:AD:67:2C:5A:1C:BC:E1:6F:8B:94:07:A2:D0:92:23:A0:91:E5:16:9C:B7:3C:34:77
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
petsmart.it *.petsmart.it *.188.petsmart.it *.o2.petsmart.it

Other domains in certificate

15gaott.xyz *.15gaott.xyz *.laravel.15gaott.xyz *.ww1.15gaott.xyz *.ww25.15gaott.xyz
*.2aml.9ct2.shop 9ct2.shop *.9ct2.shop *.umaoxth1o.9ct2.shop
angelsrescue.com *.angelsrescue.com *.test.angelsrescue.com
barlassina.com *.barlassina.com *.mail.barlassina.com
*.bajar.chok.me *.bhai.chok.me *.bhar.chok.me chok.me *.chok.me *.en.chok.me *.ghnta.chok.me *.ham.chok.me *.hi.chok.me *.kamra.chok.me *.kanke.chok.me *.mery.chok.me *.milt.chok.me *.ww25.chok.me
*.api.deportv.com deportv.com *.deportv.com *.sitemaps.deportv.com *.ww16.deportv.com *.ww17.deportv.com
fugel.com *.fugel.com *.sitemap.fugel.com
*.ca.jipsy.net *.capp.jipsy.net *.com.jipsy.net jipsy.net *.jipsy.net *.m.jipsy.net *.mail.jipsy.net *.mobile.jipsy.net *.w-ww.jipsy.net *.w.jipsy.net *.webmail.jipsy.net *.wwwwww.jipsy.net
kukaj.cz *.kukaj.cz *.sitemaps.kukaj.cz
*.articles.ladydragons.com *.blog.ladydragons.com *.club.ladydragons.com *.hostmaster.ladydragons.com ladydragons.com *.ladydragons.com *.net.ladydragons.com *.old.ladydragons.com *.random.ladydragons.com *.rz.ladydragons.com *.static.ladydragons.com *.status.ladydragons.com *.users.ladydragons.com *.wiki.ladydragons.com *.ww17.ladydragons.com *.ww25.ladydragons.com
ohio-ai.com *.ohio-ai.com *.www.ohio-ai.com
*.forum.okulary.net okulary.net *.okulary.net
*.books.sheesley.com *.its.sheesley.com *.kazan.sheesley.com *.locations.sheesley.com *.mvideo.sheesley.com *.pool.sheesley.com *.search.sheesley.com sheesley.com *.sheesley.com *.stores.sheesley.com *.www.sheesley.com