Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=seekingarrangement.website
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 18, 2025
Valid Until
March 18, 2026
34 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3B:5A:B3:EB:3C:F5:AB:2A:F8:61:CD:CE:AC:50:58:5C:3D:A0:86:EB:45:6C:AD:88:F0:53:F8:28:14:68:31:50
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
phimmoiaa.com
*.phimmoiaa.com
agayz1.com
*.agayz1.com
alexazdesign.com
*.alexazdesign.com
alijanlawdressesfirm.com
*.alijanlawdressesfirm.com
alpacagear.shop
*.alpacagear.shop
andresdelights.com
*.andresdelights.com
aslain.shop
*.aslain.shop
billie.chat
*.billie.chat
c8b8632554.com
*.c8b8632554.com
categorize.shop
*.categorize.shop
discovai.io
*.discovai.io
*.ww38.discovai.io
findbarns-us.com
*.findbarns-us.com
gearboxautomaticnorouzi.com
*.gearboxautomaticnorouzi.com
hstechsvc.net
*.hstechsvc.net
humanselectindonesia.com
*.humanselectindonesia.com
ingikids.com
*.ingikids.com
kanaizukalab.com
*.kanaizukalab.com
keyleads.io
*.keyleads.io
lojashoxpres.site
*.lojashoxpres.site
*.ww25.lojashoxpres.site
*.demo.ltcking.xyz
ltcking.xyz
*.ltcking.xyz
*.sh.ltcking.xyz
*.vcbshdemo.ltcking.xyz
*.ww1.ltcking.xyz
*.ww25.ltcking.xyz
*.ww38.ltcking.xyz
medamtruyen.com
*.medamtruyen.com
mixer-machinely.com
*.mixer-machinely.com
mixer-sparrowbill.com
*.mixer-sparrowbill.com
mixer-splashdown.com
*.mixer-splashdown.com
pergolasideas.com
*.pergolasideas.com
*.1c3b0.read-newsfeed.com
*.1zxye.read-newsfeed.com
*.3epnu.read-newsfeed.com
*.4hdjz.read-newsfeed.com
*.69241.read-newsfeed.com
*.7576f.read-newsfeed.com
*.ca00e.read-newsfeed.com
*.cbnjc.read-newsfeed.com
*.cf8f6.read-newsfeed.com
*.gb1fa.read-newsfeed.com
*.ibh0k.read-newsfeed.com
*.random.read-newsfeed.com
read-newsfeed.com
*.read-newsfeed.com
*.wtesq.read-newsfeed.com
*.enroll.rollmonitoring.com
rollmonitoring.com
*.rollmonitoring.com
seekingarrangement.website
*.seekingarrangement.website
*.ww25.seekingarrangement.website
spikerani.com
*.spikerani.com
steelbuildings-uk.net
*.steelbuildings-uk.net
theboxerwebtoon.com
*.theboxerwebtoon.com
thecleanday.com
*.thecleanday.com
tridenthockey.com
*.tridenthockey.com
Other domains in certificate