Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=dreansync.co
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 13, 2026
Valid Until
September 11, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
90:3C:56:7C:17:2E:30:93:43:0A:CB:EB:4F:FD:2C:3D:17:DE:64:D5:31:D5:04:5A:D7:86:88:1A:F1:77:9E:A3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
56 domains
riki.au
*.riki.au
*.labutiko.riki.au
benuabet8.click
*.benuabet8.click
biofuelbox.com
*.biofuelbox.com
*.ww25.biofuelbox.com
burgmanseats.com
*.burgmanseats.com
cevsiargao.com
*.cevsiargao.com
*.www.cevsiargao.com
dreansync.co
*.dreansync.co
evergreenhill.com
*.evergreenhill.com
*.ww25.evergreenhill.com
intermqx.co
*.intermqx.co
*.apple.learning.au
*.curtin.learning.au
learning.au
*.learning.au
*.mitre10.learning.au
*.random.learning.au
logicxonomy.co
*.logicxonomy.co
maniaelectronics.co
*.maniaelectronics.co
mckennalarge.co
*.mckennalarge.co
*.blog.michiganmotel.com
michiganmotel.com
*.michiganmotel.com
ofertas.life
*.ofertas.life
*.email.pio.com.au
*.hostmaster.pio.com.au
*.mail.pio.com.au
pio.com.au
*.pio.com.au
*.ww38.pio.com.au
sevenarstudio.co
*.sevenarstudio.co
*.energyartist.smakul.com
smakul.com
*.smakul.com
*.ww38.smakul.com
totaljitu7.com
*.totaljitu7.com
*.www.totaljitu7.com
*.news.unitedairlinesflights.com
*.random.unitedairlinesflights.com
unitedairlinesflights.com
*.unitedairlinesflights.com
Other domains in certificate