Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fun-time.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 17, 2026
Valid Until
August 15, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8F:14:BF:7C:95:D5:B7:F5:7E:57:A6:3C:E3:73:48:03:0E:91:E3:B6:AB:37:6E:33:F9:FF:5F:BC:AE:41:B1:FE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
77 domains
zeropack.pro
*.zeropack.pro
biergarten-am-kuenettegraben.com
*.biergarten-am-kuenettegraben.com
*.ww25.biergarten-am-kuenettegraben.com
coventryjobs.com
*.coventryjobs.com
*.m.coventryjobs.com
*.cpanel.dawngs.xyz
*.cpcontacts.dawngs.xyz
dawngs.xyz
*.dawngs.xyz
*.mail.dawngs.xyz
*.webdisk.dawngs.xyz
*.webmail.dawngs.xyz
*.ww25.dawngs.xyz
*.api.forexspace.it
*.backend.forexspace.it
forexspace.it
*.forexspace.it
*.hostmaster.forexspace.it
*.staging.forexspace.it
fun-time.online
*.fun-time.online
gaestehaus-im-rosental.de
*.gaestehaus-im-rosental.de
gebetshaus-esslingen.de
*.gebetshaus-esslingen.de
kfz-ankauf-und-verkauf.de
*.kfz-ankauf-und-verkauf.de
kitchenkings.online
*.kitchenkings.online
klara.online
*.klara.online
kriti.studio
*.kriti.studio
legacymeats.store
*.legacymeats.store
linkslotgacor.online
*.linkslotgacor.online
liobathelabel.de
*.liobathelabel.de
lojadagrowth.online
*.lojadagrowth.online
m33.studio
*.m33.studio
mdnsgn.co
*.mdnsgn.co
*.ww25.mdnsgn.co
milotogel.store
*.milotogel.store
mimzy.online
*.mimzy.online
perspektivemensch.de
*.perspektivemensch.de
perspicuous.de
*.perspicuous.de
ramentrip.com
*.ramentrip.com
s-m-moden-potsdam.de
*.s-m-moden-potsdam.de
superoferta.online
*.superoferta.online
susannamontua.de
*.susannamontua.de
*.admin.thameside.com
thameside.com
*.thameside.com
thomasgamesdocs.com
*.thomasgamesdocs.com
*.ww16.thomasgamesdocs.com
*.ww25.thomasgamesdocs.com
*.apps.wasts.xyz
wasts.xyz
*.wasts.xyz
xiaojiu.fun
*.xiaojiu.fun
Other domains in certificate