Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=dailysweeties.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
46:F3:58:65:9C:C8:A6:A3:A4:23:71:E6:46:EC:DA:A2:54:9A:57:23:54:61:3A:8C:2A:21:FA:86:B7:5A:20:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
toypta.com
*.toypta.com
aaaal.com
*.aaaal.com
*.client.aaaal.com
*.gateway.aaaal.com
annabelleshakesheave.net
*.annabelleshakesheave.net
bizbooster.app
*.bizbooster.app
*.www.bizbooster.app
*.adobe.blzee.com
blzee.com
*.blzee.com
*.22www.bolly2tolly.org
*.admin.bolly2tolly.org
*.alpha.bolly2tolly.org
bolly2tolly.org
*.bolly2tolly.org
*.demo.bolly2tolly.org
*.dev.bolly2tolly.org
*.ww.bolly2tolly.org
*.ww01.bolly2tolly.org
*.www.bolly2tolly.org
*.agh.carbonbikepedals.com
carbonbikepedals.com
*.carbonbikepedals.com
*.resolver.carbonbikepedals.com
unionsheng.com.sg
*.unionsheng.com.sg
*.4.dailysweeties.com
dailysweeties.com
*.dailysweeties.com
*.drac.dailysweeties.com
*.motor.dailysweeties.com
*.nod32.dailysweeties.com
*.typo3.dailysweeties.com
*.yb.dailysweeties.com
passiondiyprojectshub.live
*.passiondiyprojectshub.live
*.cpanel.rakets.com
rakets.com
*.rakets.com
*.webvpn.rakets.com
rejestr.com
*.rejestr.com
rowlandboys.com
*.rowlandboys.com
rpyuo.gdn
*.rpyuo.gdn
sdkmysqldx.xyz
*.sdkmysqldx.xyz
slagerijen.com
*.slagerijen.com
sonseca.com
*.sonseca.com
sundararajan.com
*.sundararajan.com
superkingbed.com
*.superkingbed.com
tahoesprings.com
*.tahoesprings.com
thekai.com
*.thekai.com
thesifter.com
*.thesifter.com
trippiehippie.com
*.trippiehippie.com
tuspuertas.com
*.tuspuertas.com
viccy.com
*.viccy.com
vidaylibertad.com
*.vidaylibertad.com
waisi.com
*.waisi.com
wallings.com
*.wallings.com
weddingsdreamlandvows.beauty
*.weddingsdreamlandvows.beauty
weddingslovecelebration.beauty
*.weddingslovecelebration.beauty
weyeneth.com
*.weyeneth.com
xn--sonfrsatlarayetienalronlinefrsatlar-ghfqi49o.shop
*.xn--sonfrsatlarayetienalronlinefrsatlar-ghfqi49o.shop
zierbrunnen.com
*.zierbrunnen.com
Other domains in certificate