Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=galaxylamps.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 20, 2026
Valid Until
July 19, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
61:F3:83:FB:C0:A3:3E:FC:E7:43:1D:AA:AA:FC:96:97:D9:A9:34:BA:75:76:0B:27:9E:AC:AB:CB:4D:98:6B:A9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
69 domains
forumtu.com
*.forumtu.com
*.tools.forumtu.com
*.warac.forumtu.com
altersoft.io
*.altersoft.io
*.imx.altersoft.io
amazonkdo.com
*.amazonkdo.com
*.ww38.amazonkdo.com
arcticair.online
*.arcticair.online
*.ww25.arcticair.online
arrangement.au
*.arrangement.au
dasesiumworkhovdimi.info
*.dasesiumworkhovdimi.info
*.com.domens.com
domens.com
*.domens.com
dssnyc.us
*.dssnyc.us
*.app.fidelidy.com
*.dashs.fidelidy.com
*.dns.fidelidy.com
*.esgpro.fidelidy.com
fidelidy.com
*.fidelidy.com
*.fisc.fidelidy.com
*.jobs.fidelidy.com
*.pma.fidelidy.com
*.preprod.fidelidy.com
*.random.fidelidy.com
*.ww25.fidelidy.com
galaxylamps.com.au
*.galaxylamps.com.au
*.ww38.galaxylamps.com.au
gosummarize.com
*.gosummarize.com
*.ww25.gosummarize.com
landscaping.it
*.landscaping.it
mai-turbo.net
*.mai-turbo.net
*.polar.mai-turbo.net
*.magento.motorcyclist.uk
motorcyclist.uk
*.motorcyclist.uk
njref.com
*.njref.com
patienwallet.org
*.patienwallet.org
*.uabmedicine.patienwallet.org
*.vvh.patienwallet.org
*.8db2b65d-8880-4f58-ab1e-55b4242dc23a.rtptopbet88.vip
rtptopbet88.vip
*.rtptopbet88.vip
*.webmail.rtptopbet88.vip
*.ww25.rtptopbet88.vip
stonehaven.au
*.stonehaven.au
*.nj.swinglifestyl.com
swinglifestyl.com
*.swinglifestyl.com
*.ww1.swinglifestyl.com
*.old.travellingpeeps.com
travellingpeeps.com
*.travellingpeeps.com
*.ww25.travellingpeeps.com
Other domains in certificate