Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=wine2.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 21, 2026
Valid Until
April 21, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
45:8F:26:9E:E0:1D:67:2F:80:BE:5D:A1:BA:CD:9E:D2:1A:D3:E9:4D:7B:55:70:BD:B3:83:DC:AC:CB:A4:91:F1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ach.com.pl
*.ach.com.pl
24xgoc.com
*.24xgoc.com
*.aiupdates.24xgoc.com
ainova.pro
*.ainova.pro
arrangement.live
*.arrangement.live
bakabros.world
*.bakabros.world
*.adminer.belessa.com
belessa.com
*.belessa.com
*.pornhub.belessa.com
*.test.belessa.com
*.ww17.belessa.com
*.ww25.belessa.com
betbbuzz365.live
*.betbbuzz365.live
betterhealt.com
*.betterhealt.com
book3.live
*.book3.live
buytickets.me
*.buytickets.me
c23.live
*.c23.live
casadanteroma.com
*.casadanteroma.com
chihauhau.com
*.chihauhau.com
*.ebay.chihauhau.com
dogappreciationday.com
*.dogappreciationday.com
*.ww12.dogappreciationday.com
experianlogin.com
*.experianlogin.com
*.wildcard.experianlogin.com
gangbangdaily.com
*.gangbangdaily.com
*.join.gangbangdaily.com
*.ww25.gangbangdaily.com
gymfit.uk
*.gymfit.uk
*.plugin.gymfit.uk
ku-9995.bet
*.ku-9995.bet
kydogs.com
*.kydogs.com
pluto-games.com
*.pluto-games.com
*.s1.pluto-games.com
*.store.pluto-games.com
prayhunter.online
*.prayhunter.online
*.ww38.prayhunter.online
rapifutboltv.info
*.rapifutboltv.info
*.ww38.rapifutboltv.info
*.www.rapifutboltv.info
reakt.live
*.reakt.live
*.comune.recreationcar.com
*.ftp.recreationcar.com
recreationcar.com
*.recreationcar.com
*.smtp.recreationcar.com
reticulation.au
*.reticulation.au
rylie.info
*.rylie.info
superstarlady.com
*.superstarlady.com
uzzo.tv
*.uzzo.tv
*.12a16c51-c43c-428e-b994-79518668dedc.weearn.click
*.admin.weearn.click
weearn.click
*.weearn.click
whynot.au
*.whynot.au
*.cpanel.wine2.xyz
wine2.xyz
*.wine2.xyz
xptz.studio
*.xptz.studio
*.mobile.youwintrivia.com
youwintrivia.com
*.youwintrivia.com
Other domains in certificate