Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=10008.blog
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 01, 2026
Valid Until
June 30, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
65:A4:10:36:93:50:4E:6B:63:A4:56:C9:AF:24:AF:85:30:14:10:95:04:6C:B5:A2:77:38:8F:37:18:63:25:95
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
85585.locker
*.85585.locker
10008.blog
*.10008.blog
1086.win
*.1086.win
12747.co
*.12747.co
26382.one
*.26382.one
3dq.cc
*.3dq.cc
500aabb.cc
*.500aabb.cc
52337.locker
*.52337.locker
6803.pizza
*.6803.pizza
69u.my
*.69u.my
8513.win
*.8513.win
92171.locker
*.92171.locker
9498.win
*.9498.win
96206.one
*.96206.one
a2ztokenization.com
*.a2ztokenization.com
a2ztokenize.com
*.a2ztokenize.com
ainterests.com
*.ainterests.com
airfryersupply.icu
*.airfryersupply.icu
autoglm.io
*.autoglm.io
bettertruthmanagementzion.com
*.bettertruthmanagementzion.com
bgmhdz.sx
*.bgmhdz.sx
carfex.com
*.carfex.com
chorigrillgourmet.com
*.chorigrillgourmet.com
credgemolagroup.com
*.credgemolagroup.com
damdardrogon.com
*.damdardrogon.com
dataaboutdata.com
*.dataaboutdata.com
datenvodafone.com
*.datenvodafone.com
deervita.com
*.deervita.com
defensebulletin.com
*.defensebulletin.com
hh1299999.com
*.hh1299999.com
hobbye.com
*.hobbye.com
horcomsystem.com
*.horcomsystem.com
jhudielexpress.com
*.jhudielexpress.com
joinfrederikdortmund.com
*.joinfrederikdortmund.com
jslnk.trade
*.jslnk.trade
jspek.trade
*.jspek.trade
jtrwv.trade
*.jtrwv.trade
jymiq4wlzuekuls.top
*.jymiq4wlzuekuls.top
kickandsway.com
*.kickandsway.com
veags.com
*.veags.com
westernbabe.com
*.westernbabe.com
wtf25.lol
*.wtf25.lol
www223883.com
*.www223883.com
www773208.com
*.www773208.com
xn--2e3az3e.com
*.xn--2e3az3e.com
Other domains in certificate