Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bobbiegoods.it.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
75:49:F2:B8:75:22:B8:F9:53:B2:68:65:C4:59:E8:8C:C9:23:EE:E8:CE:50:89:3C:CD:23:85:66:41:DC:C1:82
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
purestarpharmacy.com
*.purestarpharmacy.com
altenlabs.com
*.altenlabs.com
auto-car-price-in.today
*.auto-car-price-in.today
bbaiaice.xyz
*.bbaiaice.xyz
bobbiegoods.it.com
*.bobbiegoods.it.com
bodymachine.com
*.bodymachine.com
hassanmehndiexpert.com
*.hassanmehndiexpert.com
impactwithraido.com
*.impactwithraido.com
jaimadhumilindchs.in
*.jaimadhumilindchs.in
nmlkl.cc
*.nmlkl.cc
omds21.com
*.omds21.com
onlinebookkeepers.com
*.onlinebookkeepers.com
onsock.com
*.onsock.com
oydrjb.gdn
*.oydrjb.gdn
paradiselaboratories.com
*.paradiselaboratories.com
pc6.xyz
*.pc6.xyz
pgdo.gdn
*.pgdo.gdn
pichincha-web.site
*.pichincha-web.site
pioneerpractitioner.com
*.pioneerpractitioner.com
plieu.one
*.plieu.one
rajaplay.club
*.rajaplay.club
rdymczd.com
*.rdymczd.com
realmspace223.top
*.realmspace223.top
rpuni.auction
*.rpuni.auction
sana777.club
*.sana777.club
seaboll.com
*.seaboll.com
secureyoudiy.xyz
*.secureyoudiy.xyz
security-jobs-upgrade-854.sbs
*.security-jobs-upgrade-854.sbs
senseofsmell.org
*.senseofsmell.org
sihelipro.com
*.sihelipro.com
skcut.one
*.skcut.one
skyrocketmyagency.com
*.skyrocketmyagency.com
slot88qrisjp.it.com
*.slot88qrisjp.it.com
spmenergy.com
*.spmenergy.com
thejoycasino-ca.com
*.thejoycasino-ca.com
thetechconference.com
*.thetechconference.com
tipgn.top
*.tipgn.top
totalhomeremodelingservices.com
*.totalhomeremodelingservices.com
transformfyxerhit.info
*.transformfyxerhit.info
travelfriend.net
*.travelfriend.net
upliftventuregroup.com
*.upliftventuregroup.com
vibecodingdemo.com
*.vibecodingdemo.com
xn--gneenerjiliat-sgb81au3a9v.com
*.xn--gneenerjiliat-sgb81au3a9v.com
xn--oltabalkl-x3a13dugcbb.com
*.xn--oltabalkl-x3a13dugcbb.com
yo62.cc
*.yo62.cc
Other domains in certificate