Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=00700.work
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
93:8E:B8:ED:83:10:7D:1C:E4:68:CD:29:7D:EB:F4:5D:3C:B9:E8:AD:8B:67:5C:4E:2C:27:72:63:8C:DC:2A:F7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
1024day.vip
*.1024day.vip
00700.work
*.00700.work
012558.com
*.012558.com
031.biz
*.031.biz
033.biz
*.033.biz
063.biz
*.063.biz
064.biz
*.064.biz
066.biz
*.066.biz
068.biz
*.068.biz
069941.vip
*.069941.vip
087k.cc
*.087k.cc
10818.loan
*.10818.loan
11113366dh1.shop
*.11113366dh1.shop
11113366xx8.shop
*.11113366xx8.shop
12pwcfe1.top
*.12pwcfe1.top
14441.one
*.14441.one
15s.it
*.15s.it
1759.im
*.1759.im
19600.xyz
*.19600.xyz
1avx.com
*.1avx.com
1i9kt3.shop
*.1i9kt3.shop
21363.click
*.21363.click
22184.net
*.22184.net
22217kk.com
*.22217kk.com
238597.art
*.238597.art
23win.clothing
*.23win.clothing
242765.com
*.242765.com
24na.top
*.24na.top
26317.biz
*.26317.biz
271407.com
*.271407.com
28759.social
*.28759.social
29992.locker
*.29992.locker
2business.cyou
*.2business.cyou
2wg1gfg.top
*.2wg1gfg.top
mf6.fo
*.mf6.fo
mibet.design
*.mibet.design
midlifemommies.com
*.midlifemommies.com
millertoyota.net
*.millertoyota.net
mindfulvacationtrips.live
*.mindfulvacationtrips.live
miniprep-plasmid-762133890.click
*.miniprep-plasmid-762133890.click
tagplay.click
*.tagplay.click
thewaxhawgazette.com
*.thewaxhawgazette.com
tmav383.com
*.tmav383.com
www7du.app
*.www7du.app
xn--yit389f2gb.com
*.xn--yit389f2gb.com
Other domains in certificate