Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=42162.my
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 21, 2026
Valid Until
July 20, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
38:CD:CB:84:1D:BD:BB:30:B5:C4:07:38:A2:8C:08:4D:A7:AD:C7:F0:75:22:E2:CA:57:2E:AB:62:78:A1:07:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
885679.cc
*.885679.cc
35433.one
*.35433.one
369591.com
*.369591.com
37611.deal
*.37611.deal
39816.pro
*.39816.pro
41121.pro
*.41121.pro
413065.co
*.413065.co
42162.my
*.42162.my
422228.blog
*.422228.blog
43403.my
*.43403.my
46016.my
*.46016.my
46985.top
*.46985.top
4nsxj0q.top
*.4nsxj0q.top
51066.blog
*.51066.blog
53173.blog
*.53173.blog
53244.mobi
*.53244.mobi
540c31.cc
*.540c31.cc
567823.vip
*.567823.vip
568778.top
*.568778.top
571684.pro
*.571684.pro
57432.my
*.57432.my
59036.blog
*.59036.blog
59552.mobi
*.59552.mobi
59822.mobi
*.59822.mobi
64026.top
*.64026.top
66189.mobi
*.66189.mobi
75969.pro
*.75969.pro
78874.my
*.78874.my
79824.my
*.79824.my
891a13.cc
*.891a13.cc
9533666.com
*.9533666.com
accountopenai.com
*.accountopenai.com
affordable-used-car-deals-2025br.sbs
*.affordable-used-car-deals-2025br.sbs
aged-services-66268.click
*.aged-services-66268.click
alphajobsmail.com
*.alphajobsmail.com
arbakacas.top
*.arbakacas.top
bahanbakukebab.net
*.bahanbakukebab.net
balitourism.org
*.balitourism.org
bshae.work
*.bshae.work
buqpm.cc
*.buqpm.cc
buy-reliable-used-cars-now-af.sbs
*.buy-reliable-used-cars-now-af.sbs
car-insurance-58769.click
*.car-insurance-58769.click
cleaning-service-69.sbs
*.cleaning-service-69.sbs
coloradogov.org
*.coloradogov.org
perthcarpenters.au
*.perthcarpenters.au
Other domains in certificate