Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=centopercentovod.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 20, 2026
Valid Until
August 18, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A1:24:2D:CB:31:44:50:C5:77:BD:2A:5E:21:80:B8:D0:07:8B:0D:7A:7E:6B:B9:51:5A:FF:3D:6C:07:F3:8A:8C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
drukcd.com
*.drukcd.com
*.access.drukcd.com
*.apps.drukcd.com
*.gateway.drukcd.com
*.m.drukcd.com
*.rd.drukcd.com
*.ssl.drukcd.com
*.wildcard.drukcd.com
ainame.app
*.ainame.app
*.bejccapi.ainame.app
*.sitemap.ainame.app
*.www.ainame.app
centopercentovod.com
*.centopercentovod.com
*.kinza-shww25.centopercentovod.com
*.ww16.centopercentovod.com
economy.au
*.economy.au
iue.au
*.iue.au
*.ada.jsxtyunjs.cn
jsxtyunjs.cn
*.jsxtyunjs.cn
*.xh7.jsxtyunjs.cn
*.apps.jwq.org
*.ba.jwq.org
*.bethel.jwq.org
*.donate.jwq.org
*.e1pp.jwq.org
*.em.jwq.org
*.field.jwq.org
*.fielddev.jwq.org
*.fielddraft.jwq.org
*.fieldqa.jwq.org
*.jwl-draft.jwq.org
jwq.org
*.jwq.org
*.m.jwq.org
*.my.jwq.org
*.mz.jwq.org
*.nl.jwq.org
*.portal.jwq.org
*.stream-dev.jwq.org
*.stream-staging.jwq.org
*.stream.jwq.org
*.training.jwq.org
*.us.jwq.org
*.wol.jwq.org
kualalumpur.cz
*.kualalumpur.cz
*.random.kualalumpur.cz
livetvapp.to
*.livetvapp.to
*.the.livetvapp.to
*.ww16.livetvapp.to
*.ww38.livetvapp.to
lostcause.au
*.lostcause.au
*.data.martinracing.com.au
martinracing.com.au
*.martinracing.com.au
*.random.siabet.live
siabet.live
*.siabet.live
*.sitemap.siabet.live
*.www.siabet.live
*.admin.toaken.pro
*.api.toaken.pro
*.app.toaken.pro
*.demo.toaken.pro
*.dev.toaken.pro
*.login.toaken.pro
toaken.pro
*.toaken.pro
*.www.toaken.pro
*.es.yoursandmayanonline.com
*.ww11.yoursandmayanonline.com
*.ww17.yoursandmayanonline.com
*.ww25.yoursandmayanonline.com
*.ww38.yoursandmayanonline.com
yoursandmayanonline.com
*.yoursandmayanonline.com
*.random.zinkmo.com
*.ww25.zinkmo.com
*.www.zinkmo.com
zinkmo.com
*.zinkmo.com
Other domains in certificate