Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=heartandsoulweddings.beauty
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CB:0E:E0:1E:CE:FD:B1:87:34:ED:72:5F:B7:99:DF:B1:F4:12:BE:FA:A0:10:07:78:F3:AE:89:C9:BB:59:5A:54
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
invokeyourpotential.com
*.invokeyourpotential.com
holidaydeals.co.in
*.holidaydeals.co.in
heartandsoulweddings.beauty
*.heartandsoulweddings.beauty
heartcaring.cn
*.heartcaring.cn
heartfeltweddingslove.beauty
*.heartfeltweddingslove.beauty
heartoonahealth.com
*.heartoonahealth.com
heartstringsweddings.beauty
*.heartstringsweddings.beauty
heating-company-611967306.click
*.heating-company-611967306.click
heating-repair-companies-12.cfd
*.heating-repair-companies-12.cfd
hellogza.com
*.hellogza.com
hichdd.bid
*.hichdd.bid
hiqaljdtjl.cc
*.hiqaljdtjl.cc
historicalvacationtours.xyz
*.historicalvacationtours.xyz
hnsrv8d.cyou
*.hnsrv8d.cyou
holo.gg
*.holo.gg
holycities.info
*.holycities.info
hostsprite.net
*.hostsprite.net
hotelfortunaresort.com
*.hotelfortunaresort.com
hotellescharmes.com
*.hotellescharmes.com
hpnuts.fun
*.hpnuts.fun
hqbkq8tz.top
*.hqbkq8tz.top
hs-metal.com
*.hs-metal.com
hs3c5.com
*.hs3c5.com
humanoidscan.com
*.humanoidscan.com
hxsfp.co
*.hxsfp.co
hy32119.cc
*.hy32119.cc
hy80751.com
*.hy80751.com
hyderabadambulanceservices.com
*.hyderabadambulanceservices.com
i9bet8.net
*.i9bet8.net
idreams.net
*.idreams.net
imaaz.com.au
*.imaaz.com.au
index4-batik77.icu
*.index4-batik77.icu
indexcua.com
*.indexcua.com
indochinenet.com
*.indochinenet.com
industrial-mr.com
*.industrial-mr.com
inmytown.it
*.inmytown.it
innovative-cidp-832665693.click
*.innovative-cidp-832665693.click
innovativegardeningtech.live
*.innovativegardeningtech.live
ionml.com
*.ionml.com
isrewatds.com
*.isrewatds.com
jawbike.in
*.jawbike.in
jiyey.cn
*.jiyey.cn
jjjj11.cc
*.jjjj11.cc
jmgmanagement.com
*.jmgmanagement.com
joinsnapsoftpro.com
*.joinsnapsoftpro.com
Other domains in certificate