Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=1122crxy301.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 25, 2026
Valid Until
July 24, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
92:C4:8A:34:0C:6D:86:7F:E5:F7:CF:52:E7:A1:8A:C2:A3:57:41:60:43:0E:DD:2D:0F:D2:B4:87:AA:6B:89:58
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
22820.co
*.22820.co
1122crxy301.top
*.1122crxy301.top
21876.org
*.21876.org
21coin21.com
*.21coin21.com
22969.co
*.22969.co
23786.one
*.23786.one
251419.co
*.251419.co
29987.loan
*.29987.loan
2edits.com
*.2edits.com
452bb.com
*.452bb.com
70552.one
*.70552.one
753dd.com
*.753dd.com
8359262.cc
*.8359262.cc
96cctv.xyz
*.96cctv.xyz
aileadsdirect.com
*.aileadsdirect.com
apugak.email
*.apugak.email
aspalputih.com
*.aspalputih.com
astoryforbedtime.com
*.astoryforbedtime.com
avav21.com
*.avav21.com
axy.io
*.axy.io
baltimoreballoons.com
*.baltimoreballoons.com
bankloansapplication.com
*.bankloansapplication.com
barcodemaking.com
*.barcodemaking.com
barricadeai.com
*.barricadeai.com
basketsales.com
*.basketsales.com
beddingliquidation.com
*.beddingliquidation.com
bitcoincapital21.com
*.bitcoincapital21.com
bitcoinmoney21.com
*.bitcoinmoney21.com
bitcoinmortgageloan.com
*.bitcoinmortgageloan.com
confectionery.it.com
*.confectionery.it.com
guojiluntan.cn
*.guojiluntan.cn
haha15.com
*.haha15.com
hartford-investigations.com
*.hartford-investigations.com
immoral.io
*.immoral.io
kienthuccrypto.net
*.kienthuccrypto.net
kmq92.icu
*.kmq92.icu
lassda.com
*.lassda.com
latino.cfd
*.latino.cfd
peaceadvantage.com
*.peaceadvantage.com
schleichera.com
*.schleichera.com
sensualmassageaddis.com
*.sensualmassageaddis.com
streamsvip.com
*.streamsvip.com
y78d.cyou
*.y78d.cyou
yzlsy18.cn
*.yzlsy18.cn
zsksxb.jewelry
*.zsksxb.jewelry
Other domains in certificate