Open
Cached
·
just now
75/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=www.popsicle.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026
53 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
10:18:FA:B1:FC:25:96:0C:E3:EB:BD:56:FD:90:94:27:7A:18:38:18:A7:50:9C:DC:88:8C:51:FE:06:84:FB:FA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
97 domains
secure.dk.dove.com
secure.fi.dove.com
secure.fr.dove.com
secure.gr.dove.com
secure.it.dove.com
secure.sk.dove.com
www.algida.com
www.axeblack.jp
www.beautydiary.in
prod.bebeautiful.in
starterskit.becel.be
prd-gpdb.benjerry.com
www.cif.sk
www.continental.com.au
preferences.coral.de
secure.domestos.pl
www.domex-ph.com
www.domexforsanitation.com
www.ernaehrungs-forum.com
www.fairandlovely.pk
www.hellmanns.nl
stage.brightfuture.hul.co.in
training.stage.hul.co.in
www.intibiome.com
www.jornadababydove.com.br
www.knorr-kitchen.com
promopots.knorr.es
preferences.lifebuoy.co.za
secure.miko.fr
secure.api.mojeciasto.pl
secure.neutral.no
www.popsicle.com
s3.przepisy.pl
preferences.rajah.co.za
turbo.rexona.pl
www.conteudo.rexonanarede.com.br
preferences.robijndoetdewas.nl
www.rumahcantikcitra.co.id
preferences.skip.co.za
www.skipfashionexchange.co.za
preferences.sunlight.co.za
www.unilever-fima.com
aktionen.unilever.at
aktionen.unilever.ch
stage.brightfuture.unilever.co.id
training.stage.unilever.co.il
stage.brightfuture.unilever.co.za
cara.ppd.unilever.com
edicomm-qa.unilever.com
foodtasting.unilever.com
foodtastingdev.unilever.com
foodtastingqa.unilever.com
iris-foods-rnd-dev.unilever.com
iris-foods-rnd.unilever.com
pitch.unilever.com
prod.jmf.unilever.com
research-assistant-pilot.unilever.com
sagex3-emda-prod.unilever.com
ttpredictor.unilever.com
ttpredictorqa.unilever.com
utrackde.unilever.com
training.stage.unilever.com.cn
training.stage.unilever.de
training.stage.unilever.nl
www.unilever.pk
www.unilever.pl
www.unilever.ro
www.unilever.se
www.unilever.sk
stage.brightfuture.unilever.us
tools.unileverfoodsolutions.at
tools.unileverfoodsolutions.ch
tools.unileverfoodsolutions.de
www.unileverghana.com
www.unilevermaghreb.com
www.unileverme.com
www.unilevernetwork.com
www.unilevernigeria.com
dashboards.unileveronline.com
chanakya-dev.unileverservices.com
chanakya-qa.unileverservices.com
chanakya.unileverservices.com
dev-tpm-aar03.cd.unileverservices.com
dev-tpm-ams021.cd.unileverservices.com
dev-tpm-eur112.cd.unileverservices.com
lqa-tpm-ams021.cd.unileverservices.com
lqa-tpm-eur112.cd.unileverservices.com
mywizardad-api-nonprod.unileverservices.com
mywizardad-api.unileverservices.com
mywizardad-nonprod.unileverservices.com
mywizardad.unileverservices.com
ppd-tpm-ams021.cd.unileverservices.com
sqa-tpm-eur016.cd.unileverservices.com
sqa-tpm-eur026.cd.unileverservices.com
sqa-tpm-eur112.cd.unileverservices.com
healingproject.vaseline.co.uk
www.vaselinemenstrongpass.co.ke
Other domains in certificate