Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=snowcareers.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
May 30, 2026
Valid Until
August 28, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:D3:9D:B2:7F:D5:09:00:75:DE:CB:C6:2A:99:16:B6:65:44:9B:F5:3C:45:2F:26:D8:10:A2:B0:42:DD:A3:EC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
zern.app
*.zern.app
302962.com
*.302962.com
37825.my
*.37825.my
385936.co
*.385936.co
8de80abf4ae5b310.com
*.8de80abf4ae5b310.com
deaktion.com
*.deaktion.com
fiberzonewest.com
*.fiberzonewest.com
ioantools.com
*.ioantools.com
isowoodhaus.com
*.isowoodhaus.com
jetrol.com
*.jetrol.com
kemetify.com
*.kemetify.com
kemetos.com
*.kemetos.com
kemsrv.gdn
*.kemsrv.gdn
landrecol.com
*.landrecol.com
new-agency.org
*.new-agency.org
nisekohotels.com
*.nisekohotels.com
oglasibeograd.net
*.oglasibeograd.net
osmo.co
*.osmo.co
ourakola.com
*.ourakola.com
phonicsireland.com
*.phonicsireland.com
phosphor.lol
*.phosphor.lol
propecia247.com
*.propecia247.com
pungwenism.com
*.pungwenism.com
quickhawk.com
*.quickhawk.com
roboticskitsstore.com
*.roboticskitsstore.com
sanscodes.com
*.sanscodes.com
snowcareers.com
*.snowcareers.com
taxsee.org
*.taxsee.org
trejamis.com
*.trejamis.com
visioneagles.com
*.visioneagles.com
watchwrestling.club
*.watchwrestling.club
*.www.watchwrestling.club
wednesday.lol
*.wednesday.lol
word4world.org
*.word4world.org
wwwyw313.com
*.wwwyw313.com
xiu10585s.cc
*.xiu10585s.cc
xn--95q471ic0g.com
*.xn--95q471ic0g.com
xn--dya.com
*.xn--dya.com
xn--js0aw5a.com
*.xn--js0aw5a.com
xn--uvw945e.com
*.xn--uvw945e.com
xn--vus46bec.com
*.xn--vus46bec.com
xn--ygtq07h.com
*.xn--ygtq07h.com
xn--z8qu9nmxlyh4b.cc
*.xn--z8qu9nmxlyh4b.cc
yyyy.gg
*.yyyy.gg
zzz5887.top
*.zzz5887.top
Other domains in certificate