Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=parkingbycale.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 01, 2026
Valid Until
April 01, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F9:E5:67:37:6F:0C:A4:F2:1E:DD:3E:DA:27:8A:6C:96:B8:30:FF:FD:53:CF:D1:54:85:FA:B3:DB:A9:68:C9:A4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
gstone.com
*.gstone.com
*.edu.gstone.com
*.fld.gstone.com
*.pers.gstone.com
*.wiki.gstone.com
*.www.gstone.com
215ch.co
*.215ch.co
51xj.cc
*.51xj.cc
*.h.51xj.cc
*.secure.51xj.cc
*.test.51xj.cc
*.ww38.51xj.cc
55bet.pro
*.55bet.pro
airbuds.site
*.airbuds.site
amalias.store
*.amalias.store
amazan.ca
*.amazan.ca
*.staging.amazan.ca
*.ww25.amazan.ca
australiaad.com
*.australiaad.com
*.comune.australiaad.com
*.mx.australiaad.com
ayhanlab.com
*.ayhanlab.com
barbershop.blog
*.barbershop.blog
bardenelectricalltd.com
*.bardenelectricalltd.com
*.ww25.bardenelectricalltd.com
builderdarwin.com.au
*.builderdarwin.com.au
*.ww38.builderdarwin.com.au
freecreditscorereport.com.au
*.freecreditscorereport.com.au
fsk.life
*.fsk.life
gardenhouse420.com
*.gardenhouse420.com
giantf00d.com
*.giantf00d.com
hooked.group
*.hooked.group
indianmasti.com
*.indianmasti.com
*.random.indianmasti.com
*.ww38.indianmasti.com
inspicure.bio
*.inspicure.bio
midtownartcenter.com
*.midtownartcenter.com
*.rlfphoto.midtownartcenter.com
oberon.store
*.oberon.store
*.eu.parkingbycale.com
*.na.parkingbycale.com
parkingbycale.com
*.parkingbycale.com
rangmanch.studio
*.rangmanch.studio
saveorremit.online
*.saveorremit.online
shanty.store
*.shanty.store
soen.store
*.soen.store
studiolab.pro
*.studiolab.pro
supoomjae.com
*.supoomjae.com
*.journal.ucrays.com
ucrays.com
*.ucrays.com
utkucumermer.com
*.utkucumermer.com
vehiclehistorycheck.au
*.vehiclehistorycheck.au
waro.co.uk
*.waro.co.uk
*.ww25.waro.co.uk
webek.de
*.webek.de
wwwmitsubishicars.com
*.wwwmitsubishicars.com
Other domains in certificate