Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=luxuwatches.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 15, 2026
Valid Until
July 14, 2026
32 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C9:CB:31:91:F8:1A:FC:ED:F6:3A:C7:84:13:8D:4B:29:C8:5E:EE:3B:E5:94:BA:3A:D8:AD:AB:B6:79:7E:A3:E5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
wanker.au
*.wanker.au
adex.au
*.adex.au
alanos.com
*.alanos.com
barbeaters.com
*.barbeaters.com
bisceglia.com
*.bisceglia.com
carhiring.com.au
*.carhiring.com.au
*.ww38.carhiring.com.au
cepeerase.com
*.cepeerase.com
cewe69.com
*.cewe69.com
diamonds4btc.com
*.diamonds4btc.com
*.ww38.diamonds4btc.com
dotindustry.com
*.dotindustry.com
ecstudyabroad.net
*.ecstudyabroad.net
gkdcloud.net
*.gkdcloud.net
gravitygrip.com
*.gravitygrip.com
greenoe.com
*.greenoe.com
hartryanddavid.com
*.hartryanddavid.com
*.hachiko.injap.com
*.hokkaido.injap.com
injap.com
*.injap.com
*.kyoto.injap.com
*.osaka.injap.com
*.tokyo.injap.com
itsecurityaudit.com.au
*.itsecurityaudit.com.au
jasminchat.com
*.jasminchat.com
kitchenenvy.com
*.kitchenenvy.com
kraeuter-tabletten.de
*.kraeuter-tabletten.de
lilyspa.cc
*.lilyspa.cc
luxuwatches.live
*.luxuwatches.live
*.ww16.luxuwatches.live
mattienottage.com
*.mattienottage.com
medievalringfighting.com
*.medievalringfighting.com
mountaincamper.com
*.mountaincamper.com
neate.au
*.neate.au
*.ww25.neate.au
ondemanassessment.com
*.ondemanassessment.com
oztralians.com
*.oztralians.com
*.ww17.oztralians.com
payaol.com
*.payaol.com
reallysmartpeople.com
*.reallysmartpeople.com
smartassett.com
*.smartassett.com
taxassessor.net
*.taxassessor.net
*.random.thebroadside.org
thebroadside.org
*.thebroadside.org
videocil.com
*.videocil.com
wandabastyle.com
*.wandabastyle.com
workwearworld.com
*.workwearworld.com
xn--haushaltsplne-lfb.de
*.xn--haushaltsplne-lfb.de
xn--krchen-bua.de
*.xn--krchen-bua.de
zooanimals.com.au
*.zooanimals.com.au
Other domains in certificate