Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=1win-bukmeker.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D4:53:2D:CF:8C:32:B3:7D:43:6D:AC:DB:0E:32:6D:63:04:AB:77:45:4D:8C:93:0C:5B:B6:09:E0:61:6A:A2:E8
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
ablebrokers.com
*.ablebrokers.com
*.remote.ablebrokers.com
05882.co
*.05882.co
099063.vip
*.099063.vip
1win-bukmeker.top
*.1win-bukmeker.top
1win-official2.top
*.1win-official2.top
1win-onlines.top
*.1win-onlines.top
1win-sx2.top
*.1win-sx2.top
202ddd281.top
*.202ddd281.top
26355010.vip
*.26355010.vip
33211.one
*.33211.one
450447.xyz
*.450447.xyz
48398.me
*.48398.me
65065.adult
*.65065.adult
657743.pro
*.657743.pro
6f65d.com
*.6f65d.com
*.mt123.6f65d.com
84696.co
*.84696.co
aideutschland.info
*.aideutschland.info
b76a.cyou
*.b76a.cyou
cosmic-neuralforge.quest
*.cosmic-neuralforge.quest
cosmofun132.shop
*.cosmofun132.shop
costaricalifestyle.com
*.costaricalifestyle.com
ecarbuying.com
*.ecarbuying.com
*.webdisk.ecarbuying.com
*.www.ecarbuying.com
envelope-stuffing-jobs-faith-001.sbs
*.envelope-stuffing-jobs-faith-001.sbs
kings-porno.site
*.kings-porno.site
*.a3ba8a50-9fd3-400d-976b-5eabb97792e8.localdealsdb.com
localdealsdb.com
*.localdealsdb.com
*.mta.localdealsdb.com
*.reporting.localdealsdb.com
meoliving.com
*.meoliving.com
miniprint.co
*.miniprint.co
munsteadwood.com
*.munsteadwood.com
netsisters.org
*.netsisters.org
nutvillerecords.com
*.nutvillerecords.com
orionmedia.co
*.orionmedia.co
*.gitlab.safeorama.com
safeorama.com
*.safeorama.com
solar-panel-installation-jobs-cz-sdrgk4.sbs
*.solar-panel-installation-jobs-cz-sdrgk4.sbs
stgeorgeswest.com
*.stgeorgeswest.com
streamcommunity.wang
*.streamcommunity.wang
superherovr.com
*.superherovr.com
suvdeals.sbs
*.suvdeals.sbs
*.ww1.xn--av-209ct03g.com
*.ww7.xn--av-209ct03g.com
*.www.xn--av-209ct03g.com
xn--av-209ct03g.com
*.xn--av-209ct03g.com
yczb.app
*.yczb.app
Other domains in certificate