Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=edwarddorm.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 20, 2026
Valid Until
June 18, 2026
31 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
59:43:52:6D:41:4D:F5:CD:CF:C7:22:44:92:4F:CB:CA:83:B0:06:2C:1C:82:B1:D8:4D:00:0D:44:3E:6A:6E:3B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
trustbot.space
*.trustbot.space
*.random.trustbot.space
3duvprinters.com
*.3duvprinters.com
ak711.vip
*.ak711.vip
*.ww38.ak711.vip
baloohsoft.store
*.baloohsoft.store
bestwms.com
*.bestwms.com
*.crm.bestwms.com
*.hostmaster.bestwms.com
*.www.bestwms.com
brisbanebikehire.com.au
*.brisbanebikehire.com.au
*.ww84.brisbanebikehire.com.au
chainsaws.com.au
*.chainsaws.com.au
churu.site
*.churu.site
edwarddorm.com
*.edwarddorm.com
feuerforum.de
*.feuerforum.de
futbollatamtv.online
*.futbollatamtv.online
*.www.futbollatamtv.online
*.admin.ggz-ebay.com
*.cicd.ggz-ebay.com
ggz-ebay.com
*.ggz-ebay.com
*.proxy.ggz-ebay.com
*.qa.ggz-ebay.com
*.staging.ggz-ebay.com
*.ww25.ggz-ebay.com
*.app.helpassist.me
*.ftest.helpassist.me
helpassist.me
*.helpassist.me
*.m.helpassist.me
*.www.helpassist.me
hondacertifed.com
*.hondacertifed.com
*.sandbox.hondacertifed.com
*.superset.hondacertifed.com
managedsuper.com.au
*.managedsuper.com.au
medeirosdecor.com.br
*.medeirosdecor.com.br
*.ww16.medeirosdecor.com.br
nfllive.net
*.nfllive.net
*.ww1.nfllive.net
nightstalker.live
*.nightstalker.live
*.pixels.nightstalker.live
*.hostmaster.onedayspa.com
onedayspa.com
*.onedayspa.com
*.random.onedayspa.com
rainwatertank.com.au
*.rainwatertank.com.au
*.abdfgt3.sorogren.click
*.escort.sorogren.click
*.random.sorogren.click
sorogren.click
*.sorogren.click
suchgoodpeoplemovie.com
*.suchgoodpeoplemovie.com
swiftminescrypto.site
*.swiftminescrypto.site
*.ablage.swp-praezisionstechnik.de
*.deluca.swp-praezisionstechnik.de
*.qs.swp-praezisionstechnik.de
swp-praezisionstechnik.de
*.swp-praezisionstechnik.de
tarotcards.com.au
*.tarotcards.com.au
traosvocjo.com
*.traosvocjo.com
vindt.de
*.vindt.de
*.ww38.wxapp.store
wxapp.store
*.wxapp.store
*.smtp.yogicclass.online
yogicclass.online
*.yogicclass.online
Other domains in certificate