Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=jacktoto.me
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 19, 2026
Valid Until
July 18, 2026 67 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
18:91:04:18:5F:97:67:04:5B:2D:A7:8E:6B:81:C2:D8:4F:31:CD:7B:E6:AE:23:81:07:07:64:F7:CC:39:A7:60
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
pitijunkie.com *.pitijunkie.com *.enviosflecha.pitijunkie.com *.isaacespinoza.pitijunkie.com

Other domains in certificate

adsprofile.com *.adsprofile.com *.api.adsprofile.com *.demo.adsprofile.com *.keydos.adsprofile.com *.qa.adsprofile.com *.rams.adsprofile.com *.uat.adsprofile.com *.webdisk.adsprofile.com *.ytwsrvfd.adsprofile.com
*.a.cannabisdispensarycincy.com *.assets.cannabisdispensarycincy.com cannabisdispensarycincy.com *.cannabisdispensarycincy.com *.dev.cannabisdispensarycincy.com *.marketing.cannabisdispensarycincy.com *.test.cannabisdispensarycincy.com *.xrwkvotd.cannabisdispensarycincy.com
fitnessfirefight.com *.fitnessfirefight.com *.slippermen.fitnessfirefight.com
jacktoto.me *.jacktoto.me
*.rustore.simpletracknow.lol simpletracknow.lol *.simpletracknow.lol
*.affiliates.tuvfkacrzcutxad.com tuvfkacrzcutxad.com *.tuvfkacrzcutxad.com
*.app.visitpodgorica.com *.argo.visitpodgorica.com *.check.visitpodgorica.com *.css.visitpodgorica.com *.dev.visitpodgorica.com *.devops.visitpodgorica.com *.fe.visitpodgorica.com *.home.visitpodgorica.com *.k8s.visitpodgorica.com *.localhost.visitpodgorica.com *.monitoring.visitpodgorica.com *.svn.visitpodgorica.com *.themes-dev.visitpodgorica.com visitpodgorica.com *.visitpodgorica.com *.wap.visitpodgorica.com *.web.visitpodgorica.com *.webmail.visitpodgorica.com *.workflow.visitpodgorica.com
*.2436a0f6-4def-47ac-8633-1e7f0ebaffd4.wormear.com *.97507a5a-01dc-4fa3-b287-7598f6b6ff29.wormear.com *.acceptance.wormear.com *.admin.wormear.com *.api.wormear.com *.app.wormear.com *.assets.wormear.com *.b5046db1-60bb-457c-ab69-ca68fc64c605.wormear.com *.backup.wormear.com *.d83e4ceb-f3cd-4034-8a3b-5fb7626a9c45.wormear.com *.dashboard.wormear.com *.demo.wormear.com *.dev.wormear.com *.ezawpuat.wormear.com *.hostmaster.wormear.com *.jnuwlntvgmezawpuat.wormear.com *.kgqifntvgmezawpuat.wormear.com *.mail.wormear.com *.mailer.wormear.com *.marketing.wormear.com *.ntvgmezawpuat.wormear.com *.qa.wormear.com *.remote.wormear.com *.secure.wormear.com *.staging.wormear.com *.stg.wormear.com *.test.wormear.com *.uat.wormear.com *.v1.wormear.com *.vkxobumt.wormear.com *.vpn.wormear.com *.web.wormear.com wormear.com *.wormear.com
*.beta.yogi.lol *.random.yogi.lol yogi.lol *.yogi.lol