quantumsparktwotwo.weebly.com

Score 92/100

Web site information

Website image quantumsparktwotwo.weebly.com
IP Address
CDN
CloudFlare
CMS
Weebly
JavaScript Frameworks
jQuery

SEO data

title
New Page
viewport
width=device-width, initial-scale=1.0;

Lighthouse

Performance
42/100
Accessibility
95/100
Best Practices
77/100
SEO
77/100
PWA
30/100

Protocols

SSLv2
not offered
SSLv3
not offered
TLS 1.0
not offered
TLS 1.1
not offered
TLS 1.2
offered
TLS 1.3
offered with final
ALPN HTTP2
h2
ALPN
http/1.1

Vulnerabilities

heartbleed
not vulnerable, no heartbeat extension
CCS
not vulnerable
ticketbleed
not vulnerable
ROBOT
not vulnerable
SSL renegotiation
OpenSSL handshake didn't succeed
SSL client renegotiation
not vulnerable
CRIME TLS
not vulnerable
BREACH
potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested
POODLE SSL
not vulnerable, no SSLv3
fallback SCSV
no protocol below TLS 1.2 offered
SWEET32
not vulnerable
FREAK
not vulnerable
DROWN
not vulnerable on this host and port
DROWN hint
Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=221B9D1B3B7480D886617EABD034861B5EF24C315A4155F1E6821D8C8060CB25
LOGJAM
not vulnerable, no DH EXPORT ciphers,
LOGJAM-common primes
no DH key with <= TLS 1.2
BEAST
not vulnerable, no SSL3 or TLS1
LUCKY13
potentially vulnerable, uses TLS CBC ciphers
RC4
not vulnerable

Header Responses

Status code
200 OK ('/')
Clock skew
0 seconds from localtime
ipv4 in header
Set-Cookie: __cf_bm=9xxmSV2SItDMmSbpUnpLRbGFDjMGBgSH9ElQIvv2_ng-1713966142-1.0.1.1-Y94X_LDl7L6uKc95ejDZLmDVmRNS3FcpkiXc7i7OnE6XeiKUtDIMmQmuY3yGX4ZTOlWF7xM5iG1iQLM4PiNOQQ; path=/; expires=Wed, 24-Apr-24 14:12:22 GMT; domain=.weebly.com; HttpOnly; Secure; SameSite=None (check if it's your IP address or e.g. a cluster IP)
HSTS
not offered
HPKP
No support for HTTP Public Key Pinning
X-UA-Compatible
IE=edge,chrome=1
Cache-Control
private

Server Defaults

TLS extensions
'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'status request/#5' 'next protocol/#13172' 'signed certificate timestamps/#18' 'key share/#51' 'supported versions/#43' 'extended master secret/#23' 'application layer protocol negotiation/#16'
TLS session ticket
valid for 64800 seconds only (<daily)
SSL sessionID support
yes
Session Ticket Resumption
supported
Session ID Resumption
not supported
TLS timestamp
off by -1 seconds from your localtime
cert numbers
2
Signature algorithm
SHA256 with RSA
Key size
RSA 2048 bits
Key usage
Digital Signature, Key Encipherment
Extended key usage
TLS Web Server Authentication, TLS Web Client Authentication
Serial number
03D591832FDFDD262F353BCE53E2EA7D49F6
cert serialNumberLen
18
Fingerprint SHA1
BA918609CE5E1365E3595CBC91EA5D2AB3E75F30
Fingerprint SHA256
221B9D1B3B7480D886617EABD034861B5EF24C315A4155F1E6821D8C8060CB25
Certificate details
-----BEGIN CERTIFICATE----- MIIE7zCCA9egAwIBAgISA9WRgy/f3SYvNTvOU+LqfUn2MA0GCSqGSIb3DQEBCwUA MDIxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQD EwJSMzAeFw0yNDAzMDYyMDE5MDFaFw0yNDA2MDQyMDE5MDBaMBUxEzARBgNVBAMT CndlZWJseS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCxeKeY ZsQ1T8Q9711hoUrE53stZ1Hdl1Kt0fjgbXHxrzOb6ifNz9QadQRTqdE+mjkL6G0r lVlEjZIoL1Z7JULyVM7g5zvWo/304ljshOYfGaU8BkU1laSyWmmbl3EevdeRw+5v NOP35jDT1Fid0VpR/sD2ZcZh49p1ryknTGdnFwJOjA39dVLFWmzI5Nb0x8s4K/G4 RqpYj0LG7yBdeL68HOu1lLcZAlqr4jAipKkd38kKE7zciL4IOj8fCap466Y+qqgj Wg/8wN3PyXFgkytXZd3bAGLtd7PRBHEyU8pToEwx+ph/VSnlekCrrNbl3xNJGQsz DtYYCx2ehqTe4B4jAgMBAAGjggIaMIICFjAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0l BBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYE FN8KzpXRDbbz9wu6YrN5sE5q8T5zMB8GA1UdIwQYMBaAFBQusxe3WFbLrlAJQOYf r52LFMLGMFUGCCsGAQUFBwEBBEkwRzAhBggrBgEFBQcwAYYVaHR0cDovL3IzLm8u bGVuY3Iub3JnMCIGCCsGAQUFBzAChhZodHRwOi8vcjMuaS5sZW5jci5vcmcvMCMG A1UdEQQcMBqCDCoud2VlYmx5LmNvbYIKd2VlYmx5LmNvbTATBgNVHSAEDDAKMAgG BmeBDAECATCCAQQGCisGAQQB1nkCBAIEgfUEgfIA8AB2ADtTd3U+LbmAToswWwb+ QDtn2E/D9Me9AA0tcm/h+tQXAAABjhWiS44AAAQDAEcwRQIhANTxPu0Vov8f2dWd 5ADVrSQFQYvgxibkc5folm9FQcptAiAyJHDbz1Vbo7M86KPOTai+3Jn61ofzZ54I SF46m7GuQAB2AKLiv9Ye3i8vB6DWTm03p9xlQ7DGtS6i2reK+Jpt9RfYAAABjhWi S58AAAQDAEcwRQIhAJYjloPGESr0PTOTTKxgNT+3QzGR+yTVp1gwBAhzSxKWAiBK gWWp30WLwwmmK6pQxUZXpaF85ZkX33qWgwvOTQE4kzANBgkqhkiG9w0BAQsFAAOC AQEAicZE31E81iCt5wufQg2DrfhdZqje9NozQpddW8D5yc5A9zOxupyaSMtXFU0X XO6iQNkefLSxSx8spHnaMRorS97H8O860Uwe1l9ps4XMKYtxrzjiyo8WzlCjKVuR HqBlysRUMY0gh+Enlwndu4g+NxC3B9m8FKxd3+W025zjGnqmFN1BgMGyPTO3nq/O bRcK1rSEweHy3yTwS6+yZendVIU7TZ2LtVs68AtuegKQcTSVS+z3SQaXDfVAvTtO dNxBpyiGzBq31jaZ0v4++2j4jNe+vUm0mLGYDMtYua0J6DOB5ayGSugiYhhssy5F uj+tUCAS/rb860vOsy4KrVSBmw== -----END CERTIFICATE-----
Common names
weebly.com
Service Name Indication
request w/o SNI didn't succeed
SubjectAlternative Name
*.weebly.com weebly.com
Certificate authority issuers
R3 (Let's Encrypt from US)
Certificate trusted
Ok via SAN wildcard (SNI mandatory)
Certificate chain trusted
passed.
Is certificate Extended Validation
no
cert eTLS
not present
cert expirationStatus
41 >= 30 days
Valid from
2024-03-06 20:19
Valid until
2024-06-04 20:19
cert validityPeriod
No finding
Chain
3
certs list ordering problem
no
cert crlDistributionPoints
--
Online Certificate Status Protocol URL
http://r3.o.lencr.org
OCSP stapling
offered
cert ocspRevoked
not revoked
cert mustStapleExtension
--
DNS CAArecord
--
certificate transparency
yes (certificate extension)
Signature algorithm
ECDSA with SHA384
Key size
EC 256 bits
Key usage
Digital Signature
Extended key usage
TLS Web Server Authentication, TLS Web Client Authentication
Serial number
031C181AAE31ED493990CD9874BE3FB36B5F
cert serialNumberLen
18
Fingerprint SHA1
2781F41360E02EAED1775EABE7F1C94F35753619
Fingerprint SHA256
D6E134D877803887B8C93F350131A6315E0928B9ACF249A7D0793A9BFB318B16
Certificate details
-----BEGIN CERTIFICATE----- MIIDgjCCAwigAwIBAgISAxwYGq4x7Uk5kM2YdL4/s2tfMAoGCCqGSM49BAMDMDIx CzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQswCQYDVQQDEwJF MTAeFw0yNDAzMDYyMDE5MDJaFw0yNDA2MDQyMDE5MDFaMBUxEzARBgNVBAMTCndl ZWJseS5jb20wWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAAQviUGSt2/dA9w/Rnf4 EyXGtELmLGdnMxDM70416RLvkmSxVvTwHWv2Ozkr2ZPrSf9+tldsNUZvlu67atGe YrVKo4ICGTCCAhUwDgYDVR0PAQH/BAQDAgeAMB0GA1UdJQQWMBQGCCsGAQUFBwMB BggrBgEFBQcDAjAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBTCdBM3jqSfqcNGN3Cb 1eJzPkyXzzAfBgNVHSMEGDAWgBRa8+0r/DbCN3m5UjDqVG/PVcsurDBVBggrBgEF BQcBAQRJMEcwIQYIKwYBBQUHMAGGFWh0dHA6Ly9lMS5vLmxlbmNyLm9yZzAiBggr BgEFBQcwAoYWaHR0cDovL2UxLmkubGVuY3Iub3JnLzAjBgNVHREEHDAaggwqLndl ZWJseS5jb22CCndlZWJseS5jb20wEwYDVR0gBAwwCjAIBgZngQwBAgEwggEDBgor BgEEAdZ5AgQCBIH0BIHxAO8AdgA7U3d1Pi25gE6LMFsG/kA7Z9hPw/THvQANLXJv 4frUFwAAAY4VolC0AAAEAwBHMEUCIQCNDtyxRrXLgThEmAInCueiUIzJykbH1GOX C3jW9I+rZwIgGCQ1y2WUm/VS/aWGtZW0dfDQluQVvJSLahCDpkv1phoAdQCi4r/W Ht4vLweg1k5tN6fcZUOwxrUuotq3iviabfUX2AAAAY4VolEmAAAEAwBGMEQCIC6U jlLj1Za6DFIhfXO+3hQGd1iOZWNl3k8HiEMlXHysAiAuBJbnpICtb8o67FSNZ5d5 LHIuWIW97NMNsNLO6abcETAKBggqhkjOPQQDAwNoADBlAjEA54tqHHjOd52iiXoj z6C/fUsq+ngVrbpmGQvIFDq6YHxpdkEpgjYEVWDp1XNr1P5vAjAeFsFMm3CABwhp oAwNDIIVKbrQcml0STI1ZGtWi7Dy8vSLoJXLSsqnIAWCJEyxKjY= -----END CERTIFICATE-----
Common names
weebly.com
Service Name Indication
request w/o SNI didn't succeed, usual for EC certificates
SubjectAlternative Name
*.weebly.com weebly.com
Certificate authority issuers
E1 (Let's Encrypt from US)
Certificate trusted
Ok via SAN wildcard (SNI mandatory)
Certificate chain trusted
passed.
Is certificate Extended Validation
no
cert eTLS
not present
cert expirationStatus
41 >= 30 days
Valid from
2024-03-06 20:19
Valid until
2024-06-04 20:19
cert validityPeriod
No finding
Chain
4
certs list ordering problem
no
cert crlDistributionPoints
--
Online Certificate Status Protocol URL
http://e1.o.lencr.org
OCSP stapling
offered
cert ocspRevoked
not revoked
cert mustStapleExtension
--
DNS CAArecord
--
certificate transparency
yes (certificate extension)

Server Preferences

order
server -- TLS 1.3 client determined
Which protocol negotiated
Default protocol TLS1.3
negotiated
TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)
order TLSv1 2
ECDHE-ECDSA-AES128-GCM-SHA256

Perfect Forward Secrecy

PFS
offered
PFS s
ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-SHA384 ECDHE-ECDSA-AES256-SHA ECDHE-ECDSA-CHACHA20-POLY1305-OLD ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA ECDHE-RSA-CHACHA20-POLY1305-OLD
PFS ECDHE curves
prime256v1

Ciphers

ECDHE-ECDSA-CHACHA20-POLY1305-OLD ECDH 256 ChaCha20 256 TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256_OLD
(0xcc14)
ECDHE-RSA-CHACHA20-POLY1305-OLD ECDH 256 ChaCha20 256 TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256_OLD
(0xcc13)
ECDHE-RSA-AES256-GCM-SHA384 ECDH 256 AESGCM 256 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
(0xc030)
ECDHE-ECDSA-AES256-GCM-SHA384 ECDH 256 AESGCM 256 TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
(0xc02c)
ECDHE-RSA-AES256-SHA384 ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
(0xc028)
ECDHE-ECDSA-AES256-SHA384 ECDH 256 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384
(0xc024)
ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
(0xc014)
ECDHE-ECDSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
(0xc00a)
AES256-GCM-SHA384 RSA AESGCM 256 TLS_RSA_WITH_AES_256_GCM_SHA384
(0x9d)
AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
(0x3d)
AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
(0x35)
ECDHE-RSA-AES128-GCM-SHA256 ECDH 256 AESGCM 128 TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
(0xc02f)
ECDHE-ECDSA-AES128-GCM-SHA256 ECDH 256 AESGCM 128 TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
(0xc02b)
ECDHE-RSA-AES128-SHA256 ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
(0xc027)
ECDHE-ECDSA-AES128-SHA256 ECDH 256 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256
(0xc023)
ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
(0xc013)
ECDHE-ECDSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
(0xc009)
AES128-GCM-SHA256 RSA AESGCM 128 TLS_RSA_WITH_AES_128_GCM_SHA256
(0x9c)
AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
(0x3c)
AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
(0x2f)

Browser Simulations

Android 4.4.2
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
Android 5.0.0
TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305-OLD
Android 6.0
TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305-OLD
Android 7.0
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-android 81
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-android 90
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-android X
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-chrome 74 win10
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-chrome 79 win10
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-firefox 66 win81
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-firefox 71 win10
TLSv1.3 TLS_AES_128_GCM_SHA256
Windows XP Internet Explorer 6
No connection
Windows 7 Internet Explorer 8
No connection
Windows XP Internet Explorer 8
No connection
Windows 7 Internet Explorer 11
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
Windows 8.1 Internet Explorer 11
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-ie 11 winphone81
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
Windows 10 Internet Explorer 11
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-edge 15 win10
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-edge 17 win10
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-opera 66 win10
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-safari 9 ios9
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
MacOSX 10.11 Safari 9
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
MacOSX 10.12 Safari 10
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-safari 121 ios 122
TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
clientsimulation-safari 130 osx 10146
TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
iOS 9 App Transport Security 9
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
Java 6 update 45
No connection
Java 7 update 25
No connection
clientsimulation-java 8u161
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-java1102
TLSv1.3 TLS_AES_128_GCM_SHA256
clientsimulation-java1201
TLSv1.3 TLS_AES_128_GCM_SHA256
OpenSSL 1.0.2e
TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256
clientsimulation-openssl 110l
TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305
clientsimulation-openssl 111d
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-thunderbird 68 3 1
TLSv1.3 TLS_AES_128_GCM_SHA256