Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=dreamholidayescapes.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4D:E3:C2:C3:AD:79:10:B4:82:5B:AB:70:18:01:FA:0B:BA:23:3C:B8:77:21:EC:33:BA:8B:D8:37:03:F6:0F:F3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
vk-wall.co
*.vk-wall.co
1008dl2.com
*.1008dl2.com
*.pay.1008dl2.com
76952.one
*.76952.one
*.admin.76952.one
*.api.76952.one
*.app.76952.one
*.dev.76952.one
*.ww1.76952.one
aviatorsignals.com
*.aviatorsignals.com
*.sitemap.aviatorsignals.com
*.sitemaps.aviatorsignals.com
*.www.aviatorsignals.com
*.a72868a7-0569-472b-ae1d-b2851237d3db.benchmarkaianalytics.co
*.admin.benchmarkaianalytics.co
*.api.benchmarkaianalytics.co
*.app.benchmarkaianalytics.co
*.assets.benchmarkaianalytics.co
benchmarkaianalytics.co
*.benchmarkaianalytics.co
*.cpcontacts.benchmarkaianalytics.co
*.dan.benchmarkaianalytics.co
*.demo.benchmarkaianalytics.co
*.dev.benchmarkaianalytics.co
*.eca13458-aeea-448d-9b57-ecb79f8a8d56.benchmarkaianalytics.co
*.en.benchmarkaianalytics.co
*.mailgate.benchmarkaianalytics.co
*.mx.benchmarkaianalytics.co
*.stage.benchmarkaianalytics.co
*.test.benchmarkaianalytics.co
*.www.benchmarkaianalytics.co
*.www2.benchmarkaianalytics.co
*.143.dreamholidayescapes.org
*.174.dreamholidayescapes.org
*.3.dreamholidayescapes.org
dreamholidayescapes.org
*.dreamholidayescapes.org
*.f21.dreamholidayescapes.org
*.admin.heiliao417.pro
*.guiweb.heiliao417.pro
heiliao417.pro
*.heiliao417.pro
*.meradmin.heiliao417.pro
*.nav.heiliao417.pro
*.wallet.heiliao417.pro
*.ia2.kraken2tops.com
kraken2tops.com
*.kraken2tops.com
*.67e4ey.pandemicwitness.icu
pandemicwitness.icu
*.pandemicwitness.icu
*.a.presscenter.company
*.api-test.presscenter.company
*.api2.presscenter.company
*.assets.presscenter.company
*.demo.presscenter.company
*.didozassets.presscenter.company
*.nedxqspringboot.presscenter.company
*.openapi.presscenter.company
*.pay.presscenter.company
presscenter.company
*.presscenter.company
*.prod.presscenter.company
*.springboot.presscenter.company
*.www.presscenter.company
*.com.semaomi.website
*.info.semaomi.website
*.net.semaomi.website
*.online.semaomi.website
semaomi.website
*.semaomi.website
*.tw.semaomi.website
*.1.verwest.com
*.cit.verwest.com
*.cu.verwest.com
*.dr.verwest.com
*.law.verwest.com
*.mondialri.verwest.com
*.newsite.verwest.com
*.shalom.verwest.com
verwest.com
*.verwest.com
*.ww11.verwest.com
*.ww16.verwest.com
*.ww25.verwest.com
*.xxx.verwest.com
Other domains in certificate