Open
Cached
·
just now
91/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=locus.bio
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 10, 2026
Valid Until
May 11, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:6B:90:4C:07:7C:56:4E:8E:9A:BD:CD:29:84:94:61:B6:B8:17:43:B9:05:A6:1F:E2:5D:7B:16:B1:16:6A:EF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), sync-xhr=(); +6 more
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
81 domains
vecomachinery.com
*.vecomachinery.com
783tt.com
*.783tt.com
aborabie.com
*.aborabie.com
aussiegigguide.com.au
*.aussiegigguide.com.au
baptisthelth.net
*.baptisthelth.net
*.cmeonline.baptisthelth.net
*.ww25.baptisthelth.net
*.ww38.baptisthelth.net
breakfasttimes.net
*.breakfasttimes.net
*.cdn-0.breakfasttimes.net
centrocondos.com
*.centrocondos.com
crossfitmn.com
*.crossfitmn.com
*.random.crossfitmn.com
csegroupehn.com
*.csegroupehn.com
*.ww25.csegroupehn.com
easy-up.pro
*.easy-up.pro
femailinsurance.online
*.femailinsurance.online
*.api.gigastore.sk
gigastore.sk
*.gigastore.sk
*.s.gigastore.sk
*.ww25.gigastore.sk
jobup.work
*.jobup.work
*.ww7.jobup.work
locus.bio
*.locus.bio
mangaadogs.com
*.mangaadogs.com
marinalofts.com
*.marinalofts.com
pfv.au
*.pfv.au
*.ww25.pfv.au
rbav.info
*.rbav.info
*.fortigate.scancap.com
*.m.scancap.com
*.random.scancap.com
scancap.com
*.scancap.com
*.sitemaps.scancap.com
*.ww25.scancap.com
servitudes.com
*.servitudes.com
sohoj.com
*.sohoj.com
suksesmuda.online
*.suksesmuda.online
surf-for-free.com
*.surf-for-free.com
*.ww25.surf-for-free.com
*.www.surf-for-free.com
theredarmy.co.uk
*.theredarmy.co.uk
*.moodle.trackwresting.com
trackwresting.com
*.trackwresting.com
truefutv.club
*.truefutv.club
urbanblight.org
*.urbanblight.org
*.api.webminimalism.online
webminimalism.online
*.webminimalism.online
*.random.xn--5oq16w1wb.co
xn--5oq16w1wb.co
*.xn--5oq16w1wb.co
zypto.online
*.zypto.online
Other domains in certificate