Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=spirtavert.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 17, 2026
Valid Until
July 16, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FA:F9:D1:19:C8:62:4A:84:54:86:72:EF:C0:71:36:2D:BC:03:37:33:C0:C2:C5:84:89:66:EA:7B:46:DE:82:BE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
advancedall.com
*.advancedall.com
1000mustangs.com
*.1000mustangs.com
36801.plus
*.36801.plus
36806.plus
*.36806.plus
385729.top
*.385729.top
9675.win
*.9675.win
967832.top
*.967832.top
ab9868.shop
*.ab9868.shop
adelene.live
*.adelene.live
dy1120.cyou
*.dy1120.cyou
f7gdb9.cyou
*.f7gdb9.cyou
fantastic-cherry.com
*.fantastic-cherry.com
fsglcaaxocueg.cc
*.fsglcaaxocueg.cc
jawatoto.pro
*.jawatoto.pro
jkloi.plus
*.jkloi.plus
joinassetnews.com
*.joinassetnews.com
juanestrada.info
*.juanestrada.info
k86pw0.cyou
*.k86pw0.cyou
kashk.in
*.kashk.in
kc2384.cc
*.kc2384.cc
khqgsluturf.cc
*.khqgsluturf.cc
kkkq5g.cyou
*.kkkq5g.cyou
leon105.bet
*.leon105.bet
levantemoselcolegiopatagonia.cl
*.levantemoselcolegiopatagonia.cl
lobos.live
*.lobos.live
lt-dns.com
*.lt-dns.com
meetmindpal.com
*.meetmindpal.com
mejaajaib.info
*.mejaajaib.info
paypay.my
*.paypay.my
potencia.studio
*.potencia.studio
pperspe.com
*.pperspe.com
pqsolutions.io
*.pqsolutions.io
predictclear.com
*.predictclear.com
smartchoice.in
*.smartchoice.in
*.admin-api.spirtavert.com
*.ai.spirtavert.com
*.ns2.spirtavert.com
*.pay.spirtavert.com
*.remote.spirtavert.com
*.saas.spirtavert.com
*.shop.spirtavert.com
spirtavert.com
*.spirtavert.com
*.store.spirtavert.com
starfallfilm.com
*.starfallfilm.com
starnewstraidbro.com
*.starnewstraidbro.com
stnhvdq.xyz
*.stnhvdq.xyz
teepee.live
*.teepee.live
testinginterviewquestions.com
*.testinginterviewquestions.com
xn--gzr760hkhj.cc
*.xn--gzr760hkhj.cc
Other domains in certificate