Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=pubquiz.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 12, 2026
Valid Until
August 10, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D5:8A:63:B1:72:AB:AF:B6:2E:7C:9B:23:41:38:B1:16:94:30:92:41:1D:32:0C:8A:A4:A5:60:47:CF:D6:0A:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
85 domains
sbellard.com
*.sbellard.com
brixaqua.org
*.brixaqua.org
casc2kj.lat
*.casc2kj.lat
casinochic.top
*.casinochic.top
childcare-helper-2025.today
*.childcare-helper-2025.today
choifive88.homes
*.choifive88.homes
connectionhut.com
*.connectionhut.com
conscious.mom
*.conscious.mom
consolidatedebts.org
*.consolidatedebts.org
coredrivehub.com
*.coredrivehub.com
coredrivelabs.com
*.coredrivelabs.com
cruxinvicta.co
*.cruxinvicta.co
cszb.app
*.cszb.app
cxzr.com
*.cxzr.com
detailtopcars.com
*.detailtopcars.com
disnervid.com
*.disnervid.com
efhjkl.top
*.efhjkl.top
enjoykisystemswitz.com
*.enjoykisystemswitz.com
eyelshop.com
*.eyelshop.com
ezj29z6gdh.world
*.ezj29z6gdh.world
fbmzzc.cyou
*.fbmzzc.cyou
g92p.cyou
*.g92p.cyou
gqw25.icu
*.gqw25.icu
granma.co
*.granma.co
greenfieldiq.com
*.greenfieldiq.com
hidoctorspartners.com
*.hidoctorspartners.com
httpjob.com
*.httpjob.com
*.www.httpjob.com
nunya.lol
*.nunya.lol
nuvbo.cc
*.nuvbo.cc
paepsy.info
*.paepsy.info
papaz.info
*.papaz.info
pdspgxz1170.vip
*.pdspgxz1170.vip
pickup-indi.today
*.pickup-indi.today
promptchanai.pro
*.promptchanai.pro
pubquiz.uk
*.pubquiz.uk
*.suiss.pubquiz.uk
q2pb3jedb7.top
*.q2pb3jedb7.top
qsbkaw.biz
*.qsbkaw.biz
retrorares.com.au
*.retrorares.com.au
rtpbosbobet888.com
*.rtpbosbobet888.com
sales-manager-training-lfj4.click
*.sales-manager-training-lfj4.click
toysn.com
*.toysn.com
*.ww25.toysn.com
Other domains in certificate