Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=gigantestreetfood.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 22, 2026
Valid Until
May 23, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BC:1C:66:93:D3:D1:A4:E0:AF:9E:44:9F:CD:62:E6:FC:D7:ED:91:D2:9F:62:C3:4D:CE:71:73:2B:42:4F:6A:D0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sospoolservice.com
*.sospoolservice.com
alaskaaiir.com
*.alaskaaiir.com
*.ww38.alaskaaiir.com
brothersmanchester.com
*.brothersmanchester.com
*.citrix.brothersmanchester.com
*.ww38.brothersmanchester.com
*.ww7.brothersmanchester.com
cancunmama.com
*.cancunmama.com
ddonggga.com
*.ddonggga.com
dominiosnextdede.com
*.dominiosnextdede.com
double-trouble.me
*.double-trouble.me
*.stage.double-trouble.me
*.cpanel.dranikagoel.com
dranikagoel.com
*.dranikagoel.com
*.mail.dranikagoel.com
*.sitemaps.dranikagoel.com
*.www.dranikagoel.com
gigantestreetfood.com
*.gigantestreetfood.com
honestfatherinlaw.com
*.honestfatherinlaw.com
*.careers.hotiar.com
hotiar.com
*.hotiar.com
myfreegams.com
*.myfreegams.com
*.ww.myfreegams.com
myp.us
*.myp.us
*.ww38.myp.us
*.cc.mysaielectronics.com
*.com.mysaielectronics.com
*.dashboard.mysaielectronics.com
*.in.mysaielectronics.com
mysaielectronics.com
*.mysaielectronics.com
*.online.mysaielectronics.com
*.web.mysaielectronics.com
nro9sao.com
*.nro9sao.com
officialstovethemselves.com
*.officialstovethemselves.com
olehaan.com
*.olehaan.com
*.random.olehaan.com
pvppemandangan.click
*.pvppemandangan.click
rebahinlive.com
*.rebahinlive.com
roomstgogo.com
*.roomstgogo.com
*.info.shopkohler.in
shopkohler.in
*.shopkohler.in
treblescholarfestival.com
*.treblescholarfestival.com
*.ar.uptodwn.com
*.br.uptodwn.com
*.cn.uptodwn.com
*.de.uptodwn.com
*.en.uptodwn.com
*.fr.uptodwn.com
*.id.uptodwn.com
*.n.uptodwn.com
*.nox-app-player.uptodwn.com
*.nvidia-geforce-now.uptodwn.com
*.ru.uptodwn.com
*.th.uptodwn.com
*.tr.uptodwn.com
uptodwn.com
*.uptodwn.com
*.utorrent.uptodwn.com
uslt-aralinks.com
*.uslt-aralinks.com
vitorvungari.com
*.vitorvungari.com
vnwrlhgvczf.com
*.vnwrlhgvczf.com
wcycotzoxhvapo.com
*.wcycotzoxhvapo.com
wow24hr.me
*.wow24hr.me
Other domains in certificate