Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=usjawor.pl
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 18, 2026
Valid Until
April 18, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1D:E4:C2:A6:7E:F8:53:F3:0F:69:D2:76:3E:8F:08:3F:DF:00:09:69:46:7E:0F:AF:49:7A:70:9B:64:FA:C4:CA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
79 domains
prehab.studio
*.prehab.studio
1win-x247.site
*.1win-x247.site
alys.life
*.alys.life
assad.eu
*.assad.eu
bergs.store
*.bergs.store
buckshotsoftware.eu
*.buckshotsoftware.eu
buynice.de
*.buynice.de
bwana.eu
*.bwana.eu
campcandy.de
*.campcandy.de
elettrogalvanica.eu
*.elettrogalvanica.eu
focadrenaline.fun
*.focadrenaline.fun
frozena.co
*.frozena.co
godowski-konkurs.eu
*.godowski-konkurs.eu
hccinternational.eu
*.hccinternational.eu
kora365.live
*.kora365.live
*.s6.kora365.live
*.sitemaps.kora365.live
kupiposledovateli.shop
*.kupiposledovateli.shop
lidal.co.uk
*.lidal.co.uk
malvernlacrossetest.online
*.malvernlacrossetest.online
mekem.eu
*.mekem.eu
motorcycles-breeze.sbs
*.motorcycles-breeze.sbs
mtgfinance.eu
*.mtgfinance.eu
neumeierbau.de
*.neumeierbau.de
panda55.bet
*.panda55.bet
piratepad.eu
*.piratepad.eu
prestuplenieinakazaniego.online
*.prestuplenieinakazaniego.online
primalgrow.online
*.primalgrow.online
qayma.eu
*.qayma.eu
ravintolasaba.eu
*.ravintolasaba.eu
rboyqkyrwrvkq.top
*.rboyqkyrwrvkq.top
registerdomain.store
*.registerdomain.store
renev.eu
*.renev.eu
satou.eu
*.satou.eu
soof.website
*.soof.website
topmd.eu
*.topmd.eu
*.airflow.usjawor.pl
*.analytics.usjawor.pl
*.std.usjawor.pl
usjawor.pl
*.usjawor.pl
womens-underwear-supplier.sbs
*.womens-underwear-supplier.sbs
ystart.fun
*.ystart.fun
Other domains in certificate