Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=vanitysalon.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 24, 2025
Valid Until
March 24, 2026
34 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8C:8A:E9:E0:8C:42:DF:8E:01:01:D1:73:B0:2F:DA:27:CF:B7:C1:85:38:64:86:C1:67:7B:65:A2:86:97:2B:21
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sibforms.co
*.sibforms.co
airymc.club
*.airymc.club
burrumheads.com.au
*.burrumheads.com.au
*.random.burrumheads.com.au
donatopedro.tech
*.donatopedro.tech
dsmimmo.at
*.dsmimmo.at
ebay888.cc
*.ebay888.cc
*.ww25.ebay888.cc
*.ww38.ebay888.cc
fenixfibraoptica.com
*.fenixfibraoptica.com
finivestsa.net
*.finivestsa.net
flashtech.news
*.flashtech.news
fn6y.net
*.fn6y.net
glitched.store
*.glitched.store
*.ww25.glitched.store
healthenough.com
*.healthenough.com
*.jym.healthenough.com
*.m.healthenough.com
*.xxx.healthenough.com
*.yscx.healthenough.com
*.com.jadearmstrong.us
*.cpcontacts.jadearmstrong.us
jadearmstrong.us
*.jadearmstrong.us
*.uno.jadearmstrong.us
*.us.jadearmstrong.us
jitu99life.click
*.jitu99life.click
*.appliworks.jondesign.net
*.english.jondesign.net
jondesign.net
*.jondesign.net
*.smoothgallery.jondesign.net
makeiaslive.com
*.makeiaslive.com
marcellosimeone.com
*.marcellosimeone.com
market-shop.click
*.market-shop.click
mimiusagi.net
*.mimiusagi.net
mobiblog.io
*.mobiblog.io
*.ww25.mobiblog.io
pnkstr.com
*.pnkstr.com
raftar.xyz
*.raftar.xyz
*.b2b.raotomotiv.com
*.hostmaster.raotomotiv.com
raotomotiv.com
*.raotomotiv.com
seagm.me
*.seagm.me
shbet123.pro
*.shbet123.pro
*.wildcard.shbet123.pro
*.ww8.shbet123.pro
*.ar.thtuber.com
*.ru.thtuber.com
*.staging.thtuber.com
thtuber.com
*.thtuber.com
*.vi.thtuber.com
timbet999.xyz
*.timbet999.xyz
tplincrepeater.net
*.tplincrepeater.net
tradebull.ltd
*.tradebull.ltd
*.ww25.tradebull.ltd
treeoflifestudio.org
*.treeoflifestudio.org
vanitysalon.com
*.vanitysalon.com
victorcontacts.xyz
*.victorcontacts.xyz
*.ww25.victorcontacts.xyz
Other domains in certificate