Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=02210.my
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 15, 2026
Valid Until
September 13, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8D:1A:88:DC:A5:57:14:B1:0B:04:FB:8B:F4:0C:E1:EF:11:7B:85:CB:9A:61:EC:E4:FB:21:63:CF:8A:AE:39:08
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
348228.com
*.348228.com
02210.my
*.02210.my
1xbet-fr.xyz
*.1xbet-fr.xyz
21269.club
*.21269.club
237686.co
*.237686.co
26918.blog
*.26918.blog
30210.blog
*.30210.blog
30866.club
*.30866.club
32510.my
*.32510.my
36762.one
*.36762.one
388012.cc
*.388012.cc
3wtxcn.com
*.3wtxcn.com
447955.loan
*.447955.loan
46005.pro
*.46005.pro
50134.loan
*.50134.loan
55gms.me
*.55gms.me
60049.my
*.60049.my
62305.one
*.62305.one
68529.club
*.68529.club
777-riso777.me
*.777-riso777.me
7wfe8jq7z7.top
*.7wfe8jq7z7.top
8208031.com
*.8208031.com
921.vc
*.921.vc
99060.buzz
*.99060.buzz
999wx.vip
*.999wx.vip
9yhq.cc
*.9yhq.cc
a432crxy.top
*.a432crxy.top
adamscholesai.com
*.adamscholesai.com
amornaturals.com
*.amornaturals.com
apap7.com
*.apap7.com
artofstem.org
*.artofstem.org
aurumadvisory.pro
*.aurumadvisory.pro
autodealtracker.info
*.autodealtracker.info
automaticweightloss.com
*.automaticweightloss.com
autosecurede.cfd
*.autosecurede.cfd
autosecurede.top
*.autosecurede.top
autumn847.cfd
*.autumn847.cfd
avkfa.loan
*.avkfa.loan
bgrfvv99.com
*.bgrfvv99.com
foracquisitionthe.info
*.foracquisitionthe.info
getlacedup.com
*.getlacedup.com
meetacquisition.info
*.meetacquisition.info
okaip.qpon
*.okaip.qpon
wakanim.live
*.wakanim.live
ztxfq.qpon
*.ztxfq.qpon
Other domains in certificate