Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=23468bv.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 03, 2026
Valid Until
May 04, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
17:30:C3:3E:9B:FA:55:D7:1D:01:BE:F6:87:5F:09:3D:AC:20:CB:E4:44:76:38:07:98:57:43:32:87:30:87:8C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
valbrembo.com
*.valbrembo.com
23468bv.shop
*.23468bv.shop
47a11.com
*.47a11.com
51351.net
*.51351.net
55695.pizza
*.55695.pizza
56602.pictures
*.56602.pictures
65895.net
*.65895.net
808056.vip
*.808056.vip
872836.vip
*.872836.vip
8cje2c.com
*.8cje2c.com
90809.art
*.90809.art
91172.net
*.91172.net
96440.net
*.96440.net
adaptivechiropractic.com
*.adaptivechiropractic.com
ai-staking.com
*.ai-staking.com
autonoleggiatori.com
*.autonoleggiatori.com
cambiamoli.com
*.cambiamoli.com
culturaltravelodyssey.live
*.culturaltravelodyssey.live
deep-seek.vision
*.deep-seek.vision
delightfultravelquest.live
*.delightfultravelquest.live
divorziamo.com
*.divorziamo.com
dorsino.com
*.dorsino.com
dtntruaronioasdallux.cyou
*.dtntruaronioasdallux.cyou
egraves.com
*.egraves.com
evergreengas.com
*.evergreengas.com
faiunofferta.com
*.faiunofferta.com
finanziamentiartigiani.com
*.finanziamentiartigiani.com
hjyvg.net
*.hjyvg.net
hkzbkg.net
*.hkzbkg.net
hoipk.pro
*.hoipk.pro
home-duct-cleaning-services.top
*.home-duct-cleaning-services.top
home-duct-cleaning-services.xyz
*.home-duct-cleaning-services.xyz
imbirussu.com
*.imbirussu.com
kaptenr.sbs
*.kaptenr.sbs
myp537.pro
*.myp537.pro
neymar88super.info
*.neymar88super.info
play-surge-district.xyz
*.play-surge-district.xyz
pugspares.co.uk
*.pugspares.co.uk
pxfdp.academy
*.pxfdp.academy
redirvivo.com.br
*.redirvivo.com.br
s2avql.shop
*.s2avql.shop
sailing-magazine-subscriptions.com
*.sailing-magazine-subscriptions.com
spaccato.com
*.spaccato.com
yam7096.cc
*.yam7096.cc
yupnotes.com
*.yupnotes.com
Other domains in certificate