Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=96365.my
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
32:03:E7:1F:44:16:50:19:72:1C:04:20:18:8B:0A:F1:98:87:3E:E4:18:AC:C2:DA:3B:B6:3E:1F:DE:7F:A8:E2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
95731.gd
*.95731.gd
11272.my
*.11272.my
11338.lgbt
*.11338.lgbt
225534.co
*.225534.co
50606.adult
*.50606.adult
588329b.sbs
*.588329b.sbs
77004.cc
*.77004.cc
777-folha777.bet
*.777-folha777.bet
777-ranking777.bet
*.777-ranking777.bet
777-ranking777.win
*.777-ranking777.win
951d.tv
*.951d.tv
951e.tv
*.951e.tv
951h.tv
*.951h.tv
951u.tv
*.951u.tv
96068.mobi
*.96068.mobi
96358.my
*.96358.my
96360.my
*.96360.my
96363.my
*.96363.my
96365.my
*.96365.my
96368.my
*.96368.my
96369.my
*.96369.my
96370.my
*.96370.my
96582.my
*.96582.my
96584.my
*.96584.my
96586.my
*.96586.my
9dwcek.top
*.9dwcek.top
acornfertility.com
*.acornfertility.com
aigenerator.baby
*.aigenerator.baby
aj-quintalpg.app
*.aj-quintalpg.app
aj-quintalpg.bet
*.aj-quintalpg.bet
aubric.com
*.aubric.com
cc288.vip
*.cc288.vip
cc782.co
*.cc782.co
cuocuk88.my
*.cuocuk88.my
dnb95.cc
*.dnb95.cc
dunlopsterling.com
*.dunlopsterling.com
elqev1vlbre01dhm.top
*.elqev1vlbre01dhm.top
iconicsellersdirect.co
*.iconicsellersdirect.co
lamerpg.vip
*.lamerpg.vip
lincolnwastelink.co
*.lincolnwastelink.co
lincolnwastetrustpro.co
*.lincolnwastetrustpro.co
login5grg4d.sbs
*.login5grg4d.sbs
plorvundex.cfd
*.plorvundex.cfd
scorewarrior943.top
*.scorewarrior943.top
v8556s.top
*.v8556s.top
Other domains in certificate