Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gold-bra-de-065.sbs
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
75:DA:D0:CD:0D:17:E3:12:3F:1A:97:B8:2D:6B:CC:B5:D1:AF:8C:3C:73:CF:43:FA:D9:C5:92:D0:29:09:13:2C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
h-mm.com
*.h-mm.com
*.7a02j4.h-mm.com
*.access.h-mm.com
arcghive.org
*.arcghive.org
*.host.arcghive.org
*.hostmaster.arcghive.org
*.ww25.arcghive.org
cherri.com.au
*.cherri.com.au
ewaste.eu
*.ewaste.eu
fanaticfanz.com
*.fanaticfanz.com
gearguide.com.au
*.gearguide.com.au
glucose-monitoring-smartwatches-bid-644.sbs
*.glucose-monitoring-smartwatches-bid-644.sbs
goandiamogroup.xyz
*.goandiamogroup.xyz
gold-bra-de-065.sbs
*.gold-bra-de-065.sbs
goodlife4three.com
*.goodlife4three.com
growwithro.com
*.growwithro.com
*.m.growwithro.com
gutter-service-hw1qx.click
*.gutter-service-hw1qx.click
gynodioeciously.com
*.gynodioeciously.com
*.1d817.hijkln.xyz
*.5345425.hijkln.xyz
*.b54zj.hijkln.xyz
*.civoh.hijkln.xyz
*.d722f484-e6e3-4e13-8d0b-30fb7e31f905.hijkln.xyz
hijkln.xyz
*.hijkln.xyz
hjsin.ad
*.hjsin.ad
learntodraw.com.au
*.learntodraw.com.au
*.ap.ngi.com.au
*.mail.ngi.com.au
ngi.com.au
*.ngi.com.au
patagonianfacts.com
*.patagonianfacts.com
*.random.patagonianfacts.com
*.ww38.patagonianfacts.com
perthmetro.com.au
*.perthmetro.com.au
privacyscreens.com.au
*.privacyscreens.com.au
rocketmaniac.com
*.rocketmaniac.com
roof-repair-y501.click
*.roof-repair-y501.click
*.ms.tense.org
tense.org
*.tense.org
topexpedientinfolabs.com
*.topexpedientinfolabs.com
topexpedientinfomedia.com
*.topexpedientinfomedia.com
used-car-68.click
*.used-car-68.click
vnllicoeexhspi.cc
*.vnllicoeexhspi.cc
vxxy01.xyz
*.vxxy01.xyz
wall-shelves-g8b.click
*.wall-shelves-g8b.click
warehouse-sales-6f3q9d9m3b2.sbs
*.warehouse-sales-6f3q9d9m3b2.sbs
water-heaters.top
*.water-heaters.top
wealtharcbd.company
*.wealtharcbd.company
*.m.webpandit.com
webpandit.com
*.webpandit.com
wechatlink2.online
*.wechatlink2.online
winoverflow.info
*.winoverflow.info
*.www.winoverflow.info
youtubedownloadfree.com
*.youtubedownloadfree.com
Other domains in certificate