Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pets-buynow.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 29, 2026
Valid Until
June 27, 2026
47 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CB:78:8C:F9:D4:6E:14:10:A3:D9:C8:1A:24:AC:A8:C1:34:44:C8:E6:DE:01:E1:BE:96:96:AA:05:2F:C0:98:DF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
specctrum.net
*.specctrum.net
*.ccmdev.specctrum.net
*.cm.specctrum.net
*.cmdev.specctrum.net
*.hotfix.specctrum.net
*.ww16.specctrum.net
*.ww25.specctrum.net
*.ww38.specctrum.net
*.ww6.specctrum.net
*.6cd9j.adventurousgardeninglife.xyz
*.89wkp.adventurousgardeninglife.xyz
adventurousgardeninglife.xyz
*.adventurousgardeninglife.xyz
*.dwij7.adventurousgardeninglife.xyz
*.kwid9.adventurousgardeninglife.xyz
*.ndifg.adventurousgardeninglife.xyz
*.q2s8t.adventurousgardeninglife.xyz
berdorfgoodman.com
*.berdorfgoodman.com
*.care.berdorfgoodman.com
*.comune.berdorfgoodman.com
*.ww41.berdorfgoodman.com
booktobook.net
*.booktobook.net
*.cpcalendars.booktobook.net
*.localhost.booktobook.net
*.mail.booktobook.net
*.term.booktobook.net
*.webmail.booktobook.net
*.wildcard.booktobook.net
fovai.com
*.fovai.com
*.www.fovai.com
*.comune.luckyguner.com
*.hostmaster.luckyguner.com
luckyguner.com
*.luckyguner.com
*.mail.luckyguner.com
*.mx7.luckyguner.com
*.ns1.luckyguner.com
*.ns2.luckyguner.com
*.ww25.luckyguner.com
*.ww38.luckyguner.com
*.api.mywebsiteurl.com
mywebsiteurl.com
*.mywebsiteurl.com
*.netww25.mywebsiteurl.com
*.onlinewww.mywebsiteurl.com
*.seker.mywebsiteurl.com
*.ww.mywebsiteurl.com
paralleldesigns.co.uk
*.paralleldesigns.co.uk
*.ww7.paralleldesigns.co.uk
*.admin.pets-buynow.com
*.blog.pets-buynow.com
*.board.pets-buynow.com
*.ebooks.pets-buynow.com
*.hostmaster.pets-buynow.com
pets-buynow.com
*.pets-buynow.com
*.random.pets-buynow.com
*.ww1.pets-buynow.com
*.www.pets-buynow.com
*.insight.playboycarti.com
*.magnolia.playboycarti.com
playboycarti.com
*.playboycarti.com
*.bi.powell.com.au
*.m.powell.com.au
powell.com.au
*.powell.com.au
*.265.sh-gongbinjs.cn
*.9876.sh-gongbinjs.cn
*.cq6.sh-gongbinjs.cn
*.link.sh-gongbinjs.cn
*.pro.sh-gongbinjs.cn
sh-gongbinjs.cn
*.sh-gongbinjs.cn
spiritsairlines.com
*.spiritsairlines.com
*.ww25.spiritsairlines.com
*.cpanel.tomazlasic.net
*.hostmaster.tomazlasic.net
*.mail.tomazlasic.net
tomazlasic.net
*.tomazlasic.net
*.webdisk.tomazlasic.net
*.webmail.tomazlasic.net
*.www.tomazlasic.net
Other domains in certificate