Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=alstonia.io
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 16, 2026
Valid Until
August 14, 2026
59 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5C:EC:D5:74:DE:E3:0B:05:18:6D:97:83:88:5E:B7:A9:9A:78:E9:79:E3:97:08:E4:E5:B7:6D:DE:8C:FC:62:4E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
three-fires.com
*.three-fires.com
*.secure.three-fires.com
*.www.three-fires.com
admonished.com
*.admonished.com
*.en.admonished.com
*.es.admonished.com
*.hongkong.admonished.com
*.random.admonished.com
*.snowflake.admonished.com
*.staging.admonished.com
alstonia.io
*.alstonia.io
*.ww25.alstonia.io
*.20.atalhos.com
atalhos.com
*.atalhos.com
*.ebccls.atalhos.com
*.edu.atalhos.com
*.m.atalhos.com
aussiebet-33.com
*.aussiebet-33.com
*.cpanel.aussiebet-33.com
*.webmail.aussiebet-33.com
briggsstraton.com
*.briggsstraton.com
*.wildcard.briggsstraton.com
*.ws.briggsstraton.com
*.wss.briggsstraton.com
cqmmeats.com
*.cqmmeats.com
*.ww16.cqmmeats.com
*.ww25.cqmmeats.com
dapote.pro
*.dapote.pro
*.dev.dapote.pro
*.m.dapote.pro
headstrong.life
*.headstrong.life
*.random.headstrong.life
*.webmail.headstrong.life
*.952.lilystore.com.cn
*.auphryaan.lilystore.com.cn
*.cyzznmeishan.lilystore.com.cn
*.dqx.lilystore.com.cn
*.dqymvbaise.lilystore.com.cn
*.f.lilystore.com.cn
*.fizvbxizang.lilystore.com.cn
*.fucbxhgtyfharijanshun.lilystore.com.cn
*.fyqoffushun.lilystore.com.cn
*.gkd.lilystore.com.cn
*.hgtyfharijanshun.lilystore.com.cn
*.jxdpvliaoning.lilystore.com.cn
*.k.lilystore.com.cn
lilystore.com.cn
*.lilystore.com.cn
*.lqp.lilystore.com.cn
*.lt.lilystore.com.cn
*.mwr.lilystore.com.cn
*.ozemwzhenjiang.lilystore.com.cn
*.qfxnutonghua.lilystore.com.cn
*.sptexjian.lilystore.com.cn
*.tvj.lilystore.com.cn
*.unzlfjiamusi.lilystore.com.cn
*.vj.lilystore.com.cn
*.wfmcqchaohu.lilystore.com.cn
*.wlrxnanshun.lilystore.com.cn
*.wnf.lilystore.com.cn
*.wtxgiftp.lilystore.com.cn
*.xmdxuxianning.lilystore.com.cn
*.yem.lilystore.com.cn
*.zhenjiang.lilystore.com.cn
*.gd.parodys.com
parodys.com
*.parodys.com
*.random.parodys.com
*.wiki.parodys.com
signrobotics.info
*.signrobotics.info
*.uat.signrobotics.info
teleportation.com.au
*.teleportation.com.au
*.ww25.teleportation.com.au
*.ww38.teleportation.com.au
*.admin.wbtedrcedirect.com
wbtedrcedirect.com
*.wbtedrcedirect.com
*.wildcard.wbtedrcedirect.com
Other domains in certificate