Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=loanwizard.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 28, 2025
Valid Until
March 28, 2026
41 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F6:D7:8F:B9:3A:BE:E6:FA:18:05:97:BB:4F:34:17:08:69:4A:5F:B7:51:E8:6A:9B:DB:3F:47:B8:6D:90:4B:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
vanguartd.com
*.vanguartd.com
*.ww38.vanguartd.com
americanlegionniagarafallspost381.org
*.americanlegionniagarafallspost381.org
darkgg789.com
*.darkgg789.com
designerlegend.com.br
*.designerlegend.com.br
*.abhishek.digitallion.in
*.aditya.digitallion.in
*.decorinteriors.digitallion.in
*.digitaldatta.digitallion.in
digitallion.in
*.digitallion.in
*.dinesh.digitallion.in
*.dmcourse.digitallion.in
*.fitwellphysiotherapy.digitallion.in
*.googalproperties.digitallion.in
*.greenearthgaardner.digitallion.in
*.hrithik.digitallion.in
*.jdchessacademy.digitallion.in
*.jmworkoutdance.digitallion.in
*.keyclassify.digitallion.in
*.lakshita.digitallion.in
*.marathiestories.digitallion.in
*.mayur.digitallion.in
*.nishadigital.digitallion.in
*.punedistrictchessassociation.digitallion.in
*.regainphysiotherapy.digitallion.in
*.riyanshenterprises.digitallion.in
*.royalgroupglobal.digitallion.in
*.sachin.digitallion.in
*.sales.digitallion.in
*.samarjit.digitallion.in
*.sharemarketinmarathi.digitallion.in
*.sonali.digitallion.in
*.spdigitalhub.digitallion.in
*.ssquaretechbuildcon.digitallion.in
*.tdigitalashwini.digitallion.in
*.vkdigitalonline.digitallion.in
flordelisatacado.com.br
*.flordelisatacado.com.br
fno.au
*.fno.au
ibpipuc.org
*.ibpipuc.org
loanwizard.com.au
*.loanwizard.com.au
mpgdrivertraining.com
*.mpgdrivertraining.com
naus65.top
*.naus65.top
*.vip.naus65.top
*.ww16.naus65.top
*.ww25.naus65.top
newdailynews.com
*.newdailynews.com
pedroobral.com.br
*.pedroobral.com.br
psicologiaylogopedia.com
*.psicologiaylogopedia.com
rodamodi.com
*.rodamodi.com
thenaukritime.com
*.thenaukritime.com
*.ftp.tt5k.site
tt5k.site
*.tt5k.site
*.webmail.tt5k.site
*.admin.zagranportal.com
*.api.zagranportal.com
*.app.zagranportal.com
*.bi.zagranportal.com
*.data.zagranportal.com
*.ftp.zagranportal.com
*.intranet.zagranportal.com
*.m.zagranportal.com
*.mail.zagranportal.com
*.pop.zagranportal.com
*.portal.zagranportal.com
*.shop.zagranportal.com
*.sitemaps.zagranportal.com
*.smtp.zagranportal.com
*.store.zagranportal.com
*.ww25.zagranportal.com
*.www.zagranportal.com
*.wwww.zagranportal.com
zagranportal.com
*.zagranportal.com
Other domains in certificate