Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=shoppingcartadvertising.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 02, 2026
Valid Until
May 03, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8A:0A:C6:D9:98:10:6E:A9:B4:04:0B:64:9A:9E:13:D3:1E:C9:AF:7E:52:41:D6:FA:AC:31:65:8F:7A:F6:E6:BA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
taolss.com
*.taolss.com
gianpietro.com
*.gianpietro.com
*.hostmaster.gianpietro.com
*.comune.inmobiliariatucasa.com
inmobiliariatucasa.com
*.inmobiliariatucasa.com
ptpfcj.com
*.ptpfcj.com
puntomoda.com
*.puntomoda.com
*.cloudvpn.quiket.com
*.imap.quiket.com
*.mail.quiket.com
*.owa.quiket.com
*.portal.quiket.com
quiket.com
*.quiket.com
*.webdisk.quiket.com
*.webvpn.quiket.com
ricambio.com
*.ricambio.com
richiestafinanziamenti.com
*.richiestafinanziamenti.com
riconoscere.com
*.riconoscere.com
romihealth.com
*.romihealth.com
roofingrates.click
*.roofingrates.click
rp777riau.xyz
*.rp777riau.xyz
rudecards.com
*.rudecards.com
rugbyscores.com
*.rugbyscores.com
scaredu.com
*.scaredu.com
scende.com
*.scende.com
shoppingcartadvertising.com
*.shoppingcartadvertising.com
*.test.shoppingcartadvertising.com
sht9.fun
*.sht9.fun
siringhe.com
*.siringhe.com
sjyao.com
*.sjyao.com
speedyproductions.com
*.speedyproductions.com
spurred.com
*.spurred.com
sshgd.net
*.sshgd.net
stimolazione.com
*.stimolazione.com
stxmetaverse.com
*.stxmetaverse.com
tcgames.cc
*.tcgames.cc
uince.pro
*.uince.pro
ukkpo.pro
*.ukkpo.pro
v83bry.shop
*.v83bry.shop
vasicinesi.com
*.vasicinesi.com
xn--n40a03m.com
*.xn--n40a03m.com
xny6.quest
*.xny6.quest
xpgl88.shop
*.xpgl88.shop
ylg2.bar
*.ylg2.bar
yo4412.cc
*.yo4412.cc
yreqtz.com
*.yreqtz.com
yrjj4.homes
*.yrjj4.homes
ziangame777.co
*.ziangame777.co
zwcl6.bond
*.zwcl6.bond
Other domains in certificate