Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nicksindian.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 01, 2026
Valid Until
July 30, 2026
53 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:6E:66:57:72:2B:0E:C4:99:96:EA:ED:14:29:6F:A0:D2:03:32:3A:D0:B4:F3:86:BA:54:DE:0E:CB:72:17:21
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
73 domains
search4.com
*.search4.com
*.kertitox.search4.com
*.meetings.search4.com
*.orgwww.search4.com
*.random.search4.com
*.u.search4.com
*.www.search4.com
a10.top
*.a10.top
*.api.a10.top
*.mx.a10.top
*.37ccc8267e.flashlight.life
*.admin.flashlight.life
*.api.flashlight.life
*.cms.flashlight.life
*.dev.flashlight.life
flashlight.life
*.flashlight.life
*.old.flashlight.life
*.www.flashlight.life
*.hasqpww25.ndakotan.com
ndakotan.com
*.ndakotan.com
*.wildcard.ndakotan.com
*.ww25.ndakotan.com
newskit.social
*.newskit.social
*.ww25.newskit.social
*.auth.newtruck.com.au
newtruck.com.au
*.newtruck.com.au
*.ww25.newtruck.com.au
*.bi.nicksindian.com
*.comww.nicksindian.com
*.development.nicksindian.com
*.https.nicksindian.com
nicksindian.com
*.nicksindian.com
*.ww25.nicksindian.com
*.xxx.nicksindian.com
*.xxxvideo.nicksindian.com
*.ci.sandra-model.se
*.pipeline.sandra-model.se
sandra-model.se
*.sandra-model.se
*.superset.sandra-model.se
*.ww12.sandra-model.se
*.ww16.sandra-model.se
*.ww38.sandra-model.se
*.www.sandra-model.se
*.admin.soraga.com
*.api.soraga.com
*.app.soraga.com
*.argo.soraga.com
*.backend.soraga.com
*.dashboard.soraga.com
*.demo.soraga.com
*.dev.soraga.com
soraga.com
*.soraga.com
*.staging.soraga.com
*.superset.soraga.com
*.workflow.soraga.com
*.android.vocarroo.com
*.email.vocarroo.com
vocarroo.com
*.vocarroo.com
*.ww25.vocarroo.com
*.ww35.vocarroo.com
*.admin.yakinikupekin.com
yakinikupekin.com
*.yakinikupekin.com
Other domains in certificate