Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=05980.loan
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 30, 2026
Valid Until
April 30, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
97:48:40:1C:E6:90:A5:B0:30:81:EE:34:B4:36:2B:B8:39:21:3F:CD:D7:EB:A0:54:9D:42:67:52:6E:21:E0:38
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
59y4.com
*.59y4.com
05980.loan
*.05980.loan
16786.agency
*.16786.agency
17392.mobi
*.17392.mobi
18834.agency
*.18834.agency
197386.loan
*.197386.loan
202hdq2.com
*.202hdq2.com
305943.locker
*.305943.locker
38029.agency
*.38029.agency
41276.one
*.41276.one
49372.agency
*.49372.agency
530143.me
*.530143.me
53572.ac
*.53572.ac
56781.agency
*.56781.agency
56782.agency
*.56782.agency
60059.top
*.60059.top
60958.agency
*.60958.agency
61754.top
*.61754.top
61839.agency
*.61839.agency
62924.agency
*.62924.agency
63252.agency
*.63252.agency
63391.agency
*.63391.agency
64118.agency
*.64118.agency
65939.agency
*.65939.agency
66102.agency
*.66102.agency
68768.agency
*.68768.agency
69146.agency
*.69146.agency
69525.agency
*.69525.agency
72584.agency
*.72584.agency
76783.agency
*.76783.agency
76784.agency
*.76784.agency
82234.agency
*.82234.agency
82529.agency
*.82529.agency
82531.agency
*.82531.agency
82550.agency
*.82550.agency
82556.agency
*.82556.agency
82827.agency
*.82827.agency
83029.agency
*.83029.agency
83136.agency
*.83136.agency
warehouse-racking-428398495.click
*.warehouse-racking-428398495.click
welcame.com
*.welcame.com
wh4k6d4.top
*.wh4k6d4.top
wwwy92z.com
*.wwwy92z.com
xxskp.bid
*.xxskp.bid
zaoimnbj.cc
*.zaoimnbj.cc
Other domains in certificate