Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=222215.lgbt
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5A:CC:68:50:38:80:04:09:A9:3A:EB:64:6D:54:CD:9B:0D:33:A1:70:53:9B:94:A8:51:00:40:9B:07:7B:73:68
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
1xiaomai.com
*.1xiaomai.com
207713.lgbt
*.207713.lgbt
210885.me
*.210885.me
222215.lgbt
*.222215.lgbt
235945.blog
*.235945.blog
25686.click
*.25686.click
27135.click
*.27135.click
28081.global
*.28081.global
285720.me
*.285720.me
29365.blog
*.29365.blog
29990.click
*.29990.click
309344.lgbt
*.309344.lgbt
32126.app
*.32126.app
32688.blog
*.32688.blog
327883.me
*.327883.me
34sx.cc
*.34sx.cc
350858.blog
*.350858.blog
389727.blog
*.389727.blog
3a-home-care-services-05.click
*.3a-home-care-services-05.click
3dcad.org
*.3dcad.org
3manam.com
*.3manam.com
508946.lgbt
*.508946.lgbt
602709.agency
*.602709.agency
62881.click
*.62881.click
640h35.cc
*.640h35.cc
643859.co
*.643859.co
672843.me
*.672843.me
673041.me
*.673041.me
67508.ad
*.67508.ad
72116.me
*.72116.me
businessinvestments.com.au
*.businessinvestments.com.au
euroblogs.eu
*.euroblogs.eu
gramicidin.de
*.gramicidin.de
guanosin.de
*.guanosin.de
halogeenlampen.de
*.halogeenlampen.de
krediteforum.de
*.krediteforum.de
projectamplifyycrown.info
*.projectamplifyycrown.info
unterbauwaschbecken.de
*.unterbauwaschbecken.de
xn--gebhrmutterhalskrebs-dzb.de
*.xn--gebhrmutterhalskrebs-dzb.de
xn--harnrhrendiabolos-3zb.de
*.xn--harnrhrendiabolos-3zb.de
xn--lpflanzen-z7a.de
*.xn--lpflanzen-z7a.de
xn--rosengewchs-s8a.de
*.xn--rosengewchs-s8a.de
xn--samtvorhnge-s8a.de
*.xn--samtvorhnge-s8a.de
xn--zinkenfrse-x5a.de
*.xn--zinkenfrse-x5a.de
Other domains in certificate