76/100 SECURITY SCORE

Certificate Information

Subject
CN=groupvans.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 18, 2026
Valid Until
July 17, 2026 35 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:C7:14:15:53:49:1E:E2:46:6E:90:BE:5E:D6:35:10:FD:3F:46:63:7B:4D:F4:C3:F7:1C:EE:28:05:7E:20:91
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
cafebonappetite.com *.cafebonappetite.com *.board.cafebonappetite.com *.case.cafebonappetite.com *.cd.cafebonappetite.com *.dev.cafebonappetite.com *.kaiser.cafebonappetite.com *.openai.cafebonappetite.com *.payless.cafebonappetite.com *.prod.cafebonappetite.com *.reed.cafebonappetite.com *.rz.cafebonappetite.com *.westminster.cafebonappetite.com *.ww1.cafebonappetite.com

Other domains in certificate

647632.club *.647632.club *.authorization.647632.club
agenutama.art *.agenutama.art *.assets.agenutama.art
avsiku.com *.avsiku.com *.ccc.avsiku.com *.club.avsiku.com *.cmm.avsiku.com *.cn.avsiku.com *.cnm.avsiku.com *.com.avsiku.com *.con.avsiku.com *.cpm.avsiku.com *.eee.avsiku.com *.in.avsiku.com *.me.avsiku.com *.net.avsiku.com *.site.avsiku.com *.su.avsiku.com *.tv.avsiku.com *.vip.avsiku.com *.work.avsiku.com *.xyz.avsiku.com
groupvans.com *.groupvans.com
jayabola.rodeo *.jayabola.rodeo
*.25.kapitalanlage.online kapitalanlage.online *.kapitalanlage.online
mballahdev.co.tz *.mballahdev.co.tz
*.com.mydoterr.com *.cowww.mydoterr.com *.dev.mydoterr.com *.drupal.mydoterr.com *.mail6.mydoterr.com mydoterr.com *.mydoterr.com *.test3.mydoterr.com *.vip.mydoterr.com *.ww25.mydoterr.com *.ww38.mydoterr.com
nimcasummit.com *.nimcasummit.com
*.autoconfig.obermy.art obermy.art *.obermy.art *.smtps.obermy.art
satietycomplex.com *.satietycomplex.com
savzx.fun *.savzx.fun
spiritualmothering.com *.spiritualmothering.com
sulkn.consulting *.sulkn.consulting
uber77.link *.uber77.link
villa-marhaba-spain.nl *.villa-marhaba-spain.nl
worldlinkb.online *.worldlinkb.online
wwwz35.co *.wwwz35.co
youcanaworld.com *.youcanaworld.com
yqccske256.vip *.yqccske256.vip
yygsgdd.cn *.yygsgdd.cn
z1k2.com *.z1k2.com