Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=spotlightconnection.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A0:FB:6C:39:2E:2D:5B:42:25:1E:85:91:2C:BB:03:B9:E5:80:1C:E0:75:07:62:B1:0D:2A:1F:92:A9:9B:04:B9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
bozv.com
*.bozv.com
117354.lol
*.117354.lol
202ddd452.top
*.202ddd452.top
27995.loan
*.27995.loan
595910.lol
*.595910.lol
5dq32cco.xyz
*.5dq32cco.xyz
621413.lol
*.621413.lol
628859.lol
*.628859.lol
649861.town
*.649861.town
75249.co
*.75249.co
80125.lgbt
*.80125.lgbt
asamalatcus.cfd
*.asamalatcus.cfd
attorney-property.xyz
*.attorney-property.xyz
*.kwid9.attorney-property.xyz
broadautomation.com
*.broadautomation.com
chipstars.online
*.chipstars.online
cocksthegame.com
*.cocksthegame.com
countypt.org
*.countypt.org
cznfl.loan
*.cznfl.loan
drone.ws
*.drone.ws
dt5f.cc
*.dt5f.cc
neokinhybridz.com
*.neokinhybridz.com
sector.ae
*.sector.ae
senoritatour.party
*.senoritatour.party
serviceskzatmprm.online
*.serviceskzatmprm.online
servicosprontos.cyou
*.servicosprontos.cyou
setupdatacyplatform.info
*.setupdatacyplatform.info
setupdatacysolutions.info
*.setupdatacysolutions.info
sharedatacyteam.info
*.sharedatacyteam.info
shebao123.top
*.shebao123.top
shippingcontainerhomes.sbs
*.shippingcontainerhomes.sbs
sll800.xyz
*.sll800.xyz
smartsortltd.com
*.smartsortltd.com
spotlightconnection.com
*.spotlightconnection.com
staugustineshores.org
*.staugustineshores.org
sunshinealloysteels.info
*.sunshinealloysteels.info
svcdryom.mom
*.svcdryom.mom
taksi.name
*.taksi.name
td87601.cc
*.td87601.cc
theatergruppe-senfkorn.de
*.theatergruppe-senfkorn.de
theauthrsprstories.com
*.theauthrsprstories.com
vasudonipe.cfd
*.vasudonipe.cfd
vertex-consulting-agency.com
*.vertex-consulting-agency.com
visisootheshop.us
*.visisootheshop.us
vymfmopiatozztm.my
*.vymfmopiatozztm.my
Other domains in certificate