Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hernia-solution-jp-211.click
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 11, 2026
Valid Until
May 12, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:09:BA:84:00:22:D5:79:26:07:CD:31:A3:80:ED:0D:BE:CF:D6:33:8B:AC:68:4A:CD:48:D3:BF:71:EE:3B:87
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
breadclasaction.com
*.breadclasaction.com
485050.top
*.485050.top
81855.loan
*.81855.loan
appliedhealthcaresolutions.com
*.appliedhealthcaresolutions.com
arabcommittee.com
*.arabcommittee.com
armkleidi.com
*.armkleidi.com
austinarchitecturefirm.com
*.austinarchitecturefirm.com
ayuo.pro
*.ayuo.pro
benison.biz
*.benison.biz
bestscomfort.com
*.bestscomfort.com
bestsoftwarehouse.com
*.bestsoftwarehouse.com
bpt73.com
*.bpt73.com
bughousemaster.com
*.bughousemaster.com
businessinternetservice830471.icu
*.businessinternetservice830471.icu
cajasdehuancayo.site
*.cajasdehuancayo.site
cherishde.shop
*.cherishde.shop
chuden-seikyo.com
*.chuden-seikyo.com
comparetesla.com
*.comparetesla.com
darienlakeconcert.com
*.darienlakeconcert.com
dc-marvel.org
*.dc-marvel.org
decentralgalaxy.com
*.decentralgalaxy.com
devislab.com
*.devislab.com
dotsco.org
*.dotsco.org
ecgosc.cn
*.ecgosc.cn
ecoringoff.vip
*.ecoringoff.vip
encodehost.com
*.encodehost.com
ervovte.com
*.ervovte.com
eslotvalen.cfd
*.eslotvalen.cfd
evolvingpleasure.com
*.evolvingpleasure.com
fbreak.com
*.fbreak.com
flckrlight.com
*.flckrlight.com
gameworldfree.com
*.gameworldfree.com
gmasecuritysettlement.com
*.gmasecuritysettlement.com
goldensodality.com
*.goldensodality.com
hernia-solution-jp-211.click
*.hernia-solution-jp-211.click
hnxtkjk448.vip
*.hnxtkjk448.vip
housingkit.com
*.housingkit.com
ideafruition.com
*.ideafruition.com
mydolphineducation.com
*.mydolphineducation.com
myonlinetraining.com
*.myonlinetraining.com
neon-link.com
*.neon-link.com
neon-link.net
*.neon-link.net
novafootball.com
*.novafootball.com
*.rd.speaktomake.com
speaktomake.com
*.speaktomake.com
Other domains in certificate