Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bbbvip.church
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 05, 2026
Valid Until
July 04, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C5:03:54:CD:AA:F8:33:18:44:02:CA:9A:92:99:8E:D0:BF:19:6F:98:FA:29:32:08:F8:10:9B:B9:21:86:94:88
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
picolin.es
*.picolin.es
*.33786941-0f23-4450-acbf-4925e608ac2a.picolin.es
*.972dcb9d-c4c2-4ccd-9c8a-bf9b9de5dae5.picolin.es
*.a.picolin.es
*.admin.picolin.es
*.adminer.picolin.es
*.api.picolin.es
*.app.picolin.es
*.backup.picolin.es
*.dev.picolin.es
*.docs.picolin.es
*.e82e43bc-1cb6-4d30-a40a-6c766e1fae1e.picolin.es
*.eb3e75a2-aef8-47b4-b215-07e26e0d1008.picolin.es
*.external.picolin.es
*.intranet.picolin.es
*.mail.picolin.es
*.omsk.picolin.es
*.portal.picolin.es
*.public.picolin.es
*.share.picolin.es
*.shop.picolin.es
*.staging.picolin.es
*.store.picolin.es
*.uat.picolin.es
*.vpn.picolin.es
*.webmail.picolin.es
*.ww.picolin.es
*.www.picolin.es
bbbvip.church
*.bbbvip.church
civiltown.com
*.civiltown.com
*.m.civiltown.com
*.mail.civiltown.com
*.31975561-9bd2-4f2d-8e88-06e717a48012.correocomercial.bio
*.40ee4664-af31-4397-97da-d39230cd9c48.correocomercial.bio
*.a5fffad3-f092-4a08-9d69-ecc980af9af1.correocomercial.bio
*.admin.correocomercial.bio
*.api.correocomercial.bio
*.app.correocomercial.bio
*.assets.correocomercial.bio
*.b165b5ef-1589-42d0-b677-6d5893e4f8ac.correocomercial.bio
*.blog.correocomercial.bio
*.cerqgclick.correocomercial.bio
*.click.correocomercial.bio
correocomercial.bio
*.correocomercial.bio
*.demo.correocomercial.bio
*.dev.correocomercial.bio
*.fdc2384c-3ea0-49e9-abe7-db5eee84ec5d.correocomercial.bio
*.hostmaster.correocomercial.bio
*.members.correocomercial.bio
*.shop.correocomercial.bio
*.staging.correocomercial.bio
*.test.correocomercial.bio
*.admin.roaming.lol
*.app.roaming.lol
*.backup.roaming.lol
*.demo.roaming.lol
*.info.roaming.lol
roaming.lol
*.roaming.lol
*.staging.roaming.lol
*.test.roaming.lol
*.catalog.skillplaydex.com
*.idram.skillplaydex.com
*.irr.skillplaydex.com
*.mbank.skillplaydex.com
*.mts.skillplaydex.com
*.nalozhka.skillplaydex.com
*.sberbank.skillplaydex.com
skillplaydex.com
*.skillplaydex.com
*.status.skillplaydex.com
*.tbank.skillplaydex.com
*.uslugi.skillplaydex.com
*.web1.skillplaydex.com
*.apps.watermarkinternational.com
*.cisco.watermarkinternational.com
*.drvpn.watermarkinternational.com
*.labvirtual.watermarkinternational.com
*.m.watermarkinternational.com
*.office.watermarkinternational.com
*.outlook.watermarkinternational.com
*.relay.watermarkinternational.com
*.ssl2.watermarkinternational.com
*.sslvpn2.watermarkinternational.com
watermarkinternational.com
*.watermarkinternational.com
Other domains in certificate