Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=fitnessvitalityzone.run
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 03, 2026
Valid Until
May 04, 2026 75 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
72:BC:43:47:9F:E4:46:43:F5:2B:11:86:9E:AA:A0:7B:F7:4B:B3:13:3D:0E:CD:42:E8:9B:8C:6E:5B:12:4C:7C
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
ousada.com *.ousada.com

Other domains in certificate

anhutbaoroblox.bio *.anhutbaoroblox.bio *.auth.anhutbaoroblox.bio *.lanqfwnfhwdryrun-reportes.anhutbaoroblox.bio *.ww38.anhutbaoroblox.bio
brandbooster.agency *.brandbooster.agency *.ddv.brandbooster.agency *.landingpage.brandbooster.agency
emeraldmarketingsolutions.com *.emeraldmarketingsolutions.com
faranak.com *.faranak.com
fitnesschampionmind.run *.fitnesschampionmind.run
fitnessvitalityzone.run *.fitnessvitalityzone.run
frenier.com *.frenier.com
*.admin.giftys.xyz *.app.giftys.xyz giftys.xyz *.giftys.xyz *.test.giftys.xyz *.ww25.giftys.xyz *.ww38.giftys.xyz
goszakaz.com *.goszakaz.com
hatali.com *.hatali.com
*.ads.motivant.site *.earn.motivant.site *.gaming.motivant.site *.liborpavera.motivant.site *.link.motivant.site *.manga.motivant.site motivant.site *.motivant.site *.mylink.motivant.site *.samuel.motivant.site *.sdbvkjsdsngnb04kjj.motivant.site *.sdbvkjsdsngnbkjj.motivant.site *.visit.motivant.site *.www.motivant.site
newvacationoffers.live *.newvacationoffers.live
ohnoshedidnt.com *.ohnoshedidnt.com
ozburun.com *.ozburun.com
pickcard.com *.pickcard.com
*.app.pisosmadera.com pisosmadera.com *.pisosmadera.com
pressurecleanutah.com *.pressurecleanutah.com
protocollo.com *.protocollo.com
prpstemcell.com *.prpstemcell.com
qhkx4bx.cyou *.qhkx4bx.cyou
rashtrawadi.com *.rashtrawadi.com
rempetika.com *.rempetika.com
reversecrunch.com *.reversecrunch.com
scombro.com *.scombro.com
seibi.com *.seibi.com
sereneweddingsaffair.beauty *.sereneweddingsaffair.beauty
*.a.sswp.com *.ccop.sswp.com *.insights.sswp.com *.newsletter.sswp.com *.rustore.sswp.com sswp.com *.sswp.com *.u.sswp.com *.users.sswp.com *.ww17.sswp.com
*.api.wedinvites.com wedinvites.com *.wedinvites.com