Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=006599.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:71:7B:31:39:12:EA:97:04:D5:98:A5:FF:9C:EA:31:65:F4:20:FC:B6:3F:FC:AA:B7:C4:4F:DF:DA:78:F2:B4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
0808.it
*.0808.it
006599.shop
*.006599.shop
01427.loan
*.01427.loan
035046.cfd
*.035046.cfd
0800.marketing
*.0800.marketing
087270.vip
*.087270.vip
100413.xyz
*.100413.xyz
100416.xyz
*.100416.xyz
100417.xyz
*.100417.xyz
100422.xyz
*.100422.xyz
100435.xyz
*.100435.xyz
100438.xyz
*.100438.xyz
100447.xyz
*.100447.xyz
100449.xyz
*.100449.xyz
125638.top
*.125638.top
151696.top
*.151696.top
15971.loan
*.15971.loan
18948.net
*.18948.net
196977.loan
*.196977.loan
1d37clx.top
*.1d37clx.top
2367yhc.top
*.2367yhc.top
27617.loan
*.27617.loan
29585vip25.com
*.29585vip25.com
365bonus.cc
*.365bonus.cc
37zjd.top
*.37zjd.top
387913.xyz
*.387913.xyz
38a8clx.top
*.38a8clx.top
39hg.top
*.39hg.top
431540.xyz
*.431540.xyz
43757.loan
*.43757.loan
43837.biz
*.43837.biz
48385.top
*.48385.top
50243.cc
*.50243.cc
50638.cc
*.50638.cc
50639.cc
*.50639.cc
50683.cc
*.50683.cc
51044.cc
*.51044.cc
51047.cc
*.51047.cc
51loli.com
*.51loli.com
521tr.cyou
*.521tr.cyou
53862.vip
*.53862.vip
539782.vip
*.539782.vip
558089.loan
*.558089.loan
6d.bot
*.6d.bot
*.size.6d.bot
Other domains in certificate