Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=toxyou.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 19, 2026
Valid Until
April 19, 2026
53 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
82:1B:49:F4:5E:14:D0:67:E2:BC:6D:F8:2F:15:C3:18:DA:29:A4:D9:D9:4B:7E:1C:C7:53:9E:DE:BB:F4:2A:28
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
tag.de
*.tag.de
*.a.tag.de
*.anh.tag.de
*.bahnall.tag.de
*.fraenkischer.tag.de
*.hi.tag.de
*.reichs.tag.de
*.trau-m.tag.de
*.vo.tag.de
*.welt-aids.tag.de
*.ww16.tag.de
iapp.com.tw
*.iapp.com.tw
*.exch.horizonblue.co
horizonblue.co
*.horizonblue.co
*.mailserver.horizonblue.co
*.vpn.horizonblue.co
*.3udkc.somersetrental.com
*.43mh.somersetrental.com
*.4nt96.somersetrental.com
*.4yre68.somersetrental.com
*.d1t8.somersetrental.com
*.e0a6.somersetrental.com
*.gjydmw.somersetrental.com
*.hymtzl.somersetrental.com
*.i4fzy.somersetrental.com
*.ml42.somersetrental.com
somersetrental.com
*.somersetrental.com
*.szvo.somersetrental.com
*.uwbp.somersetrental.com
*.vtfvd.somersetrental.com
*.ww25.somersetrental.com
*.x4y2r.somersetrental.com
*.z2qu.somersetrental.com
*.z4zo.somersetrental.com
*.affiliate.toxyou.com
*.partners.toxyou.com
*.shop.toxyou.com
toxyou.com
*.toxyou.com
*.ww25.toxyou.com
*.ke.ufanisiinternationalhospitalitycollege.com
ufanisiinternationalhospitalitycollege.com
*.ufanisiinternationalhospitalitycollege.com
*.autodiscover.webprocomponents.com
*.download.webprocomponents.com
*.twitter.webprocomponents.com
webprocomponents.com
*.webprocomponents.com
*.ww25.webprocomponents.com
*.ww38.webprocomponents.com
*.youtube.webprocomponents.com
*.12.xiaoqiao11.top
*.18.xiaoqiao11.top
*.21.xiaoqiao11.top
*.28.xiaoqiao11.top
*.30.xiaoqiao11.top
*.32.xiaoqiao11.top
*.33.xiaoqiao11.top
*.36.xiaoqiao11.top
*.37.xiaoqiao11.top
*.39.xiaoqiao11.top
*.41.xiaoqiao11.top
*.43.xiaoqiao11.top
*.44.xiaoqiao11.top
*.47.xiaoqiao11.top
*.48.xiaoqiao11.top
*.51.xiaoqiao11.top
*.55.xiaoqiao11.top
*.58.xiaoqiao11.top
*.60.xiaoqiao11.top
*.61.xiaoqiao11.top
*.62.xiaoqiao11.top
*.flowise.xiaoqiao11.top
xiaoqiao11.top
*.xiaoqiao11.top
*.xx.xiaoqiao11.top
*.13.xlydh.cc
*.14.xlydh.cc
*.18.xlydh.cc
*.2.xlydh.cc
*.6.xlydh.cc
*.8.xlydh.cc
*.a.xlydh.cc
*.b.xlydh.cc
xlydh.cc
*.xlydh.cc
Other domains in certificate