Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=paranhos.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 14, 2026
Valid Until
April 14, 2026
51 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
44:E6:B1:9B:4A:B7:DB:E9:5A:91:CA:82:9C:40:3E:53:84:E8:A2:D7:01:6F:98:88:50:5E:46:D0:EC:35:BB:C7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
interviewpreparation.com
*.interviewpreparation.com
1stratemedicalbilling.com
*.1stratemedicalbilling.com
aventerprises.life
*.aventerprises.life
callencampers.com
*.callencampers.com
cattlerunfarm.com
*.cattlerunfarm.com
dublan.com
*.dublan.com
empire-streaming.club
*.empire-streaming.club
foists.com
*.foists.com
gunesotomotiv.com
*.gunesotomotiv.com
ilovedonney.com
*.ilovedonney.com
*.random.ilovedonney.com
kirriemuir.com
*.kirriemuir.com
*.testing.kirriemuir.com
kundenvorteile.com
*.kundenvorteile.com
*.app.luxury-vinyl-flooring.click
*.ci.luxury-vinyl-flooring.click
luxury-vinyl-flooring.click
*.luxury-vinyl-flooring.click
*.superset.luxury-vinyl-flooring.click
*.ww25.luxury-vinyl-flooring.click
*.www.luxury-vinyl-flooring.click
michaelfranzesetour.com
*.michaelfranzesetour.com
mkdpower.com.br
*.mkdpower.com.br
newhomesrichmondvirginia.com
*.newhomesrichmondvirginia.com
oticabaumann.com.br
*.oticabaumann.com.br
*.augusto.paranhos.com
*.demo.paranhos.com
*.helbert.paranhos.com
*.hostmaster.paranhos.com
*.mailsrv.paranhos.com
*.ms.paranhos.com
paranhos.com
*.paranhos.com
*.pop3.paranhos.com
*.revista.paranhos.com
*.ww11.paranhos.com
*.ww16.paranhos.com
*.ww38.paranhos.com
*.www.paranhos.com
pizzaquick.com
*.pizzaquick.com
*.ww25.pizzaquick.com
*.admcse.propietarioemelec.com
propietarioemelec.com
*.propietarioemelec.com
*.hostmaster.securetask.com
*.pr.securetask.com
securetask.com
*.securetask.com
*.sitemaps.securetask.com
sizzle.company
*.sizzle.company
*.ww25.sizzle.company
*.ww38.sizzle.company
snakemassage.com
*.snakemassage.com
soeter.com
*.soeter.com
takelisboa.com
*.takelisboa.com
v12uberalles.com
*.v12uberalles.com
vn29.bet
*.vn29.bet
*.thiendia.vsome.club
vsome.club
*.vsome.club
*.w.vsome.club
*.ww.vsome.club
*.wwww.vsome.club
*.xn--ww-e0a.vsome.club
*.xxxvideo.vsome.club
weissgold.com
*.weissgold.com
Other domains in certificate