Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=palomablanca.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 04, 2026
Valid Until
August 02, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:42:6E:1D:D6:9C:0C:CB:09:BF:8F:12:F7:5F:1E:99:3F:D1:A5:60:52:E9:61:A2:BB:62:D0:E1:AE:42:AF:33
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
projectswood.com
*.projectswood.com
04498.win
*.04498.win
13976.win
*.13976.win
22dac114.win
*.22dac114.win
26647672.vip
*.26647672.vip
29197.me
*.29197.me
36312.my
*.36312.my
36628.my
*.36628.my
36713.ad
*.36713.ad
36716.ad
*.36716.ad
36717.ad
*.36717.ad
36730.ad
*.36730.ad
36731.ad
*.36731.ad
36732.ad
*.36732.ad
36734.ad
*.36734.ad
36735.ad
*.36735.ad
36738.ad
*.36738.ad
36739.ad
*.36739.ad
immocircle.com
*.immocircle.com
*.members.immocircle.com
*.postmaster.immocircle.com
*.www.immocircle.com
livword.net
*.livword.net
*.cpcalendars.mhmanga.com
*.food.mhmanga.com
*.mail.mhmanga.com
mhmanga.com
*.mhmanga.com
*.random.mhmanga.com
*.webmail.mhmanga.com
*.analytic2.monomer.bio
*.analytics2.monomer.bio
*.charts.monomer.bio
*.datahub.monomer.bio
*.index.monomer.bio
*.key.monomer.bio
monomer.bio
*.monomer.bio
*.pay.monomer.bio
*.report.monomer.bio
*.reports.monomer.bio
*.stat.monomer.bio
*.viz.monomer.bio
*.warehouse-stg.monomer.bio
*.awtm0qbd9uk4de1ybx4vvkn8v.palomablanca.shop
palomablanca.shop
*.palomablanca.shop
*.ww38.palomablanca.shop
prompts.tel
*.prompts.tel
rtpbonusku.blog
*.rtpbonusku.blog
within-lab.com
*.within-lab.com
*.img1-fg.wntjn.com
wntjn.com
*.wntjn.com
xcojp.com
*.xcojp.com
xn--5uss10e.com
*.xn--5uss10e.com
xn--5z0a.com
*.xn--5z0a.com
xn--vpv736g.com
*.xn--vpv736g.com
zavic.com
*.zavic.com
zonderhoof.com
*.zonderhoof.com
Other domains in certificate