Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=thinkstash.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 30, 2026
Valid Until
July 29, 2026
49 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:41:E2:06:19:F3:5C:98:75:4C:29:95:E9:F7:25:D2:AA:FE:D5:9D:4F:B6:2C:62:84:80:0E:83:B4:FA:E4:0E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pugliae.it
*.pugliae.it
*.mail.pugliae.it
buddharestaurant.com
*.buddharestaurant.com
*.ww17.buddharestaurant.com
capecreativoe.co
*.capecreativoe.co
casshop.co
*.casshop.co
eaglerctaft.co
*.eaglerctaft.co
flouflou.co
*.flouflou.co
iaxusgroup.co
*.iaxusgroup.co
imperiunbela.co
*.imperiunbela.co
*.cdn.intlmgt.com
intlmgt.com
*.intlmgt.com
*.scripts.intlmgt.com
*.static.intlmgt.com
*.ws.intlmgt.com
*.wss.intlmgt.com
jgyfgrou.co
*.jgyfgrou.co
jollydeals.co
*.jollydeals.co
*.astelmail.learncraftsonline.com
*.betting.learncraftsonline.com
*.ep.learncraftsonline.com
learncraftsonline.com
*.learncraftsonline.com
*.office.learncraftsonline.com
*.owa.learncraftsonline.com
*.portailrds.learncraftsonline.com
*.qbe.learncraftsonline.com
*.tsfweb.learncraftsonline.com
lectrixcanvas.co
*.lectrixcanvas.co
lfejcyu.co
*.lfejcyu.co
lovelyperfecttalks.co
*.lovelyperfecttalks.co
*.datastore.mantap555.bio
mantap555.bio
*.mantap555.bio
*.www.mantap555.bio
nightlamp.it
*.nightlamp.it
*.relay.nightlamp.it
*.www.nightlamp.it
*.5faf1bd7-7108-4f7a-8591-5ce49199a089.ofm.sx
*.admin.ofm.sx
*.api.ofm.sx
*.app.ofm.sx
*.assets.ofm.sx
*.demo.ofm.sx
*.dev.ofm.sx
ofm.sx
*.ofm.sx
*.test.ofm.sx
ogrisch.com
*.ogrisch.com
portalconexaocapixaba.com.br
*.portalconexaocapixaba.com.br
*.ww25.portalconexaocapixaba.com.br
skyscaned.com
*.skyscaned.com
*.fps.sn-ny.com
sn-ny.com
*.sn-ny.com
*.blog.thinkstash.com
*.m.thinkstash.com
thinkstash.com
*.thinkstash.com
*.wp.thinkstash.com
*.wwww.thinkstash.com
*.ehjgpmwt.trafficcontrolonline.com
*.gaszmqa.trafficcontrolonline.com
trafficcontrolonline.com
*.trafficcontrolonline.com
*.postmaster.wuo.de
wuo.de
*.wuo.de
xn--flchenlaser-m8a.de
*.xn--flchenlaser-m8a.de
xvk.de
*.xvk.de
Other domains in certificate