Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=trehouse.store
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 04, 2026
Valid Until
July 03, 2026 31 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
00:2F:29:61:56:B4:DD:7C:55:EC:00:61:EC:3C:5D:DF:91:06:94:5C:0B:AE:60:A7:CA:71:D9:F1:B5:38:22:BB
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
zenun.com *.zenun.com *.blog.zenun.com *.ci.zenun.com *.eu.zenun.com *.hotfix.zenun.com *.integration.zenun.com *.jenkins.zenun.com *.mail.zenun.com *.pipeline.zenun.com *.production.zenun.com *.users.zenun.com *.ww16.zenun.com *.ww25.zenun.com *.ww38.zenun.com *.xn--17o84222211-ze9qm94jgw7azx4cjx8a.zenun.com

Other domains in certificate

3d-printers-fund-898.sbs *.3d-printers-fund-898.sbs
3w2d.shop *.3w2d.shop
bmnfr.town *.bmnfr.town
chegchik.com *.chegchik.com
cinto.it *.cinto.it *.ve.cinto.it
d0x64z.top *.d0x64z.top
dropshipdelivery.com *.dropshipdelivery.com *.ww38.dropshipdelivery.com
eelxp.claims *.eelxp.claims
*.dan.hosgubo.com hosgubo.com *.hosgubo.com
*.autoconfig.ipiccoliprestiti.com ipiccoliprestiti.com *.ipiccoliprestiti.com *.random.ipiccoliprestiti.com *.ww16.ipiccoliprestiti.com *.ww25.ipiccoliprestiti.com
kafo0yv.top *.kafo0yv.top
kao3903.cc *.kao3903.cc
kflats-banglr123.sbs *.kflats-banglr123.sbs
makkolanerajakala.fi *.makkolanerajakala.fi
*.mail.mazdaclub.cc mazdaclub.cc *.mazdaclub.cc *.wildcard.mazdaclub.cc *.www2.mazdaclub.cc
online-dating-4n2h9v1c3u8.sbs *.online-dating-4n2h9v1c3u8.sbs
osdixipavhsxqgvbvnkb.com *.osdixipavhsxqgvbvnkb.com
parimath.in *.parimath.in
protective.it.com *.protective.it.com
secondhandcars-indbest.sbs *.secondhandcars-indbest.sbs
supremecasinouk.it.com *.supremecasinouk.it.com
*.random.teddybears.com.au teddybears.com.au *.teddybears.com.au *.ww25.teddybears.com.au
tivrobotic.com *.tivrobotic.com
trehouse.store *.trehouse.store *.www.trehouse.store
upcrunchstackusa.com *.upcrunchstackusa.com
uptrenddigital.com.au *.uptrenddigital.com.au
urszulabanas.pl *.urszulabanas.pl
weight-loss-clinical-trials-94743.sbs *.weight-loss-clinical-trials-94743.sbs
xf3x7wx.top *.xf3x7wx.top
ydsds607scs8.cc *.ydsds607scs8.cc