Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=yapiyoz.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 05, 2026
Valid Until
August 03, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F1:5C:74:1E:1F:B2:E0:F3:B2:28:76:7A:79:42:A6:F3:D7:70:84:98:DC:E3:D5:71:6D:AF:A5:3B:77:11:B9:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
4it.me
*.4it.me
*.ww38.4it.me
1xbetx.net
*.1xbetx.net
*.api.1xbetx.net
*.ww38.1xbetx.net
544tr.top
*.544tr.top
basestore.me
*.basestore.me
*.ww38.basestore.me
battlezone.live
*.battlezone.live
beliesturgoid.shop
*.beliesturgoid.shop
*.international.beliesturgoid.shop
cinemao.pro
*.cinemao.pro
cportcustoms.com
*.cportcustoms.com
*.ww25.cportcustoms.com
*.c9oahv.dabing77.xyz
dabing77.xyz
*.dabing77.xyz
*.development.dabing77.xyz
*.ea06s3.dabing77.xyz
*.ftbht1r.dabing77.xyz
*.hj8wpjf.dabing77.xyz
*.hu5ffd.dabing77.xyz
*.il1nto.dabing77.xyz
*.ms8zncx8.dabing77.xyz
*.msbbf8tob.dabing77.xyz
*.mseg241jd.dabing77.xyz
*.msnziyosg.dabing77.xyz
*.msvrjubq.dabing77.xyz
*.ww38.dabing77.xyz
dailytelegraph4.xyz
*.dailytelegraph4.xyz
evapharma.co
*.evapharma.co
jdace.live
*.jdace.live
*.mm.nclexguideto75.com
nclexguideto75.com
*.nclexguideto75.com
projectify.live
*.projectify.live
qq3.bet
*.qq3.bet
*.ww38.qq3.bet
qubes.live
*.qubes.live
*.ww38.qubes.live
robobubble.com
*.robobubble.com
*.wildcard.robobubble.com
*.ww25.robobubble.com
*.ww38.robobubble.com
shopripstick.com
*.shopripstick.com
*.ww38.shopripstick.com
sophiaweb.bio
*.sophiaweb.bio
*.apac.spribegaming35.click
spribegaming35.click
*.spribegaming35.click
*.api.superjagat88.shop
*.comune.superjagat88.shop
*.sitemaps.superjagat88.shop
superjagat88.shop
*.superjagat88.shop
talkingbooks.com.au
*.talkingbooks.com.au
*.wildcard.talkingbooks.com.au
*.ww25.talkingbooks.com.au
*.secure.unitedhealthcareprovider.com
unitedhealthcareprovider.com
*.unitedhealthcareprovider.com
*.ww1.unitedhealthcareprovider.com
*.ww16.unitedhealthcareprovider.com
*.random.vinadl.space
vinadl.space
*.vinadl.space
*.dev.yapiyoz.com
*.ww38.yapiyoz.com
yapiyoz.com
*.yapiyoz.com
Other domains in certificate