Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=vonics.co.uk
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 29, 2026
Valid Until
June 27, 2026
47 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:5F:50:48:2B:7D:66:09:A2:BA:7F:61:78:CA:CE:3F:FE:5C:5E:11:AE:32:2C:38:F6:1F:C2:10:31:9C:51:8E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
83 domains
oebb.de
*.oebb.de
*.p.oebb.de
*.tickets.oebb.de
*.tk.oebb.de
*.0170a614-a387-4125-9e7c-16afccadbee9.bizbmrosper.qpon
*.5afb7b07-5d99-4b27-bf15-9a9bb33ed518.bizbmrosper.qpon
*.981e1503-7341-406a-a461-bc2d84b22676.bizbmrosper.qpon
*.admin.bizbmrosper.qpon
*.assets.bizbmrosper.qpon
*.backup.bizbmrosper.qpon
*.bfae1714-0d4e-4ed4-a052-cb51d5d2a5cd.bizbmrosper.qpon
bizbmrosper.qpon
*.bizbmrosper.qpon
*.blog.bizbmrosper.qpon
*.dashboard.bizbmrosper.qpon
*.data.bizbmrosper.qpon
*.demo.bizbmrosper.qpon
*.dev.bizbmrosper.qpon
*.mailer.bizbmrosper.qpon
*.marketing.bizbmrosper.qpon
*.members.bizbmrosper.qpon
*.secure.bizbmrosper.qpon
*.stg.bizbmrosper.qpon
*.uat.bizbmrosper.qpon
*.v2.bizbmrosper.qpon
*.web.bizbmrosper.qpon
*.www.bizbmrosper.qpon
*.wxaxnadmin.bizbmrosper.qpon
*.zmtmlassets.bizbmrosper.qpon
infinitysystems.co
*.infinitysystems.co
*.www.infinitysystems.co
*.compbio.ludwig.org
*.comphio.ludwig.org
*.hostmaster.ludwig.org
ludwig.org
*.ludwig.org
*.ww16.ludwig.org
*.ww17.ludwig.org
*.ww25.ludwig.org
*.5e95461d-30e5-4ee0-b237-7a634eaa2794.lycheekk.buzz
*.admin.lycheekk.buzz
*.app.lycheekk.buzz
*.assets.lycheekk.buzz
*.blog.lycheekk.buzz
*.demo.lycheekk.buzz
*.dev.lycheekk.buzz
*.eb00206d-88bb-4926-bab4-0b70ea3eb20a.lycheekk.buzz
*.hostmaster.lycheekk.buzz
lycheekk.buzz
*.lycheekk.buzz
*.portal.lycheekk.buzz
*.test.lycheekk.buzz
*.wvgeitest.lycheekk.buzz
*.www.lycheekk.buzz
openeocworkshub.com
*.openeocworkshub.com
orthodox.top
*.orthodox.top
owisl.org
*.owisl.org
pbjdy.town
*.pbjdy.town
*.koora.shoot-yalla.live
shoot-yalla.live
*.shoot-yalla.live
*.tv.shoot-yalla.live
termoplastico.it
*.termoplastico.it
*.1.vonics.co.uk
*.backend.vonics.co.uk
*.bi.vonics.co.uk
*.dash.vonics.co.uk
*.dashs.vonics.co.uk
*.metric.vonics.co.uk
*.redash.vonics.co.uk
*.reporting.vonics.co.uk
*.sitemap.vonics.co.uk
*.v2.vonics.co.uk
vonics.co.uk
*.vonics.co.uk
*.www.vonics.co.uk
Other domains in certificate