Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bjvacations.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 29, 2026
Valid Until
July 28, 2026
52 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D7:5F:D6:86:0B:65:E1:F1:83:11:73:6D:FA:CA:10:7F:45:A0:8B:C7:46:A5:91:08:19:D3:C0:3D:FA:3A:ED:01
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sluttie.com
*.sluttie.com
*.ww25.sluttie.com
*.www16.sluttie.com
amulet.com.au
*.amulet.com.au
*.hostmaster.amulet.com.au
*.ns.amulet.com.au
backpageofsex.com
*.backpageofsex.com
*.louisiana.backpageofsex.com
*.northwestflorida.backpageofsex.com
*.ottawa.backpageofsex.com
bjvacations.com
*.bjvacations.com
*.random.bjvacations.com
cocabichon.com
*.cocabichon.com
*.dev.cocabichon.com
darknightfilms.com
*.darknightfilms.com
digitaltokenization.com
*.digitaltokenization.com
*.mx.digitaltokenization.com
dispense.org
*.dispense.org
*.romeo.dispense.org
doggerel.com
*.doggerel.com
*.ww17.doggerel.com
dogsfrosale.com
*.dogsfrosale.com
douyin888.com
*.douyin888.com
*.mx4.douyin888.com
etisford.com
*.etisford.com
*.ww1.etisford.com
gatwick-guesthouses.co.uk
*.gatwick-guesthouses.co.uk
*.hostmaster.gatwick-guesthouses.co.uk
*.www.gatwick-guesthouses.co.uk
*.board.genralitravelinsurance.com
*.demo.genralitravelinsurance.com
genralitravelinsurance.com
*.genralitravelinsurance.com
*.hostmaster.genralitravelinsurance.com
*.hotfix.genralitravelinsurance.com
*.visualize.genralitravelinsurance.com
gisellasristorante.com
*.gisellasristorante.com
*.random.gisellasristorante.com
*.ww17.gisellasristorante.com
gregorywitt.com
*.gregorywitt.com
*.radio.gregorywitt.com
*.webmaster.gregorywitt.com
*.dev.mymoneycalculator.com.au
mymoneycalculator.com.au
*.mymoneycalculator.com.au
*.www.mymoneycalculator.com.au
sds.bet
*.sds.bet
sourcelocally.com
*.sourcelocally.com
*.ww25.sourcelocally.com
*.ww38.sourcelocally.com
starwokphoenix.com
*.starwokphoenix.com
*.ww25.starwokphoenix.com
strameast.sk
*.strameast.sk
*.wildcard.strameast.sk
*.ww38.strameast.sk
subs.cheap
*.subs.cheap
*.auth.tradingcommodities.com.au
tradingcommodities.com.au
*.tradingcommodities.com.au
*.ww38.tradingcommodities.com.au
wahl-o-mar.de
*.wahl-o-mar.de
*.ww.yyhm798s.xyz
yyhm798s.xyz
*.yyhm798s.xyz
*.fahd.ztona.org
*.shoplen.ztona.org
*.t1.ztona.org
ztona.org
*.ztona.org
Other domains in certificate