Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hollisterranchrealestate.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 03, 2026
Valid Until
May 04, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DA:84:EC:25:21:41:59:85:65:22:07:7E:DA:E7:E8:2A:C6:B8:F9:FD:2B:3C:F5:9A:CE:EE:56:5D:C7:A4:9F:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
redit.it
*.redit.it
hollisterranchrealestate.com
*.hollisterranchrealestate.com
homoeomorphy.com
*.homoeomorphy.com
hopefoundationschools.com
*.hopefoundationschools.com
hzengineerings.com
*.hzengineerings.com
ietrglxv.xyz
*.ietrglxv.xyz
indc2010.org
*.indc2010.org
indigestion.it
*.indigestion.it
innont.cn
*.innont.cn
internetinstallation199559.icu
*.internetinstallation199559.icu
ipremi.it
*.ipremi.it
isimpson.it
*.isimpson.it
it-smart.org
*.it-smart.org
janelas.it
*.janelas.it
pins.it
*.pins.it
pkb.it
*.pkb.it
play-eagle-haven.xyz
*.play-eagle-haven.xyz
plextor.it
*.plextor.it
plungermammoth.com
*.plungermammoth.com
portblairinsurance.com
*.portblairinsurance.com
postainuscita.it
*.postainuscita.it
postando.it
*.postando.it
prenotazionealbergoonline.it
*.prenotazionealbergoonline.it
primesolution.it
*.primesolution.it
puntomilano.it
*.puntomilano.it
radiorisaala.com
*.radiorisaala.com
remotetravelsagas.live
*.remotetravelsagas.live
rlgdqv.bid
*.rlgdqv.bid
saka.it
*.saka.it
scared.it
*.scared.it
sciaccaterme.it
*.sciaccaterme.it
screenmovie.it
*.screenmovie.it
secondmind.it
*.secondmind.it
selaluonline.xyz
*.selaluonline.xyz
simba69alt.my
*.simba69alt.my
sitegatuajme.com
*.sitegatuajme.com
sparklesplace.com
*.sparklesplace.com
splendidgardenpath.live
*.splendidgardenpath.live
ssr73ch.cyou
*.ssr73ch.cyou
sthepakul.com
*.sthepakul.com
sunsetgardenparadise.live
*.sunsetgardenparadise.live
suportlafd.org
*.suportlafd.org
talonusf92exxkz.biz
*.talonusf92exxkz.biz
tanya4dofficial.com
*.tanya4dofficial.com
taozhike.com
*.taozhike.com
Other domains in certificate