Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=wingede.pro
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 02, 2026
Valid Until
August 31, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
88:84:DC:74:ED:99:3B:06:B1:67:59:46:AD:E3:06:2B:C0:46:EB:16:9C:AA:F0:35:81:E7:20:6D:75:7E:8F:BA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
9-63.live
*.9-63.live
*.activate.9-63.live
*.backend.9-63.live
*.docs.9-63.live
*.groups.9-63.live
*.new.9-63.live
*.notexistsautoconfig.9-63.live
*.portal.9-63.live
*.remote.9-63.live
*.static.9-63.live
*.www.9-63.live
all18sex.me
*.all18sex.me
*.wildcard.all18sex.me
*.ww38.all18sex.me
*.admin.basetool.sk
basetool.sk
*.basetool.sk
*.llm.basetool.sk
*.random.basetool.sk
*.ww25.basetool.sk
*.ww38.basetool.sk
billionairebandwidth.com
*.billionairebandwidth.com
*.cloud.billionairebandwidth.com
*.m.billionairebandwidth.com
bizzinsights.com
*.bizzinsights.com
bodybyplastic.com
*.bodybyplastic.com
*.access.donatethechange.org
donatethechange.org
*.donatethechange.org
*.go.donatethechange.org
*.webvpn.donatethechange.org
*.32.eotech.shop
*.5ad.eotech.shop
eotech.shop
*.eotech.shop
*.ww38.eotech.shop
*.dan.hemptrip.com
hemptrip.com
*.hemptrip.com
kanelavintage.com
*.kanelavintage.com
*.ww17.kanelavintage.com
*.dan.manati.net
*.forum.manati.net
*.m.manati.net
manati.net
*.manati.net
*.mx.manati.net
*.notexistsdan.manati.net
*.notexistsmx.manati.net
*.rds1.manati.net
*.remote.manati.net
*.ts.manati.net
*.www.manati.net
*.backend.monrocasino.info
*.demo.monrocasino.info
monrocasino.info
*.monrocasino.info
*.staging.monrocasino.info
*.co.netip-ny.org
*.gig.netip-ny.org
netip-ny.org
*.netip-ny.org
*.perfectoclean.netip-ny.org
onlinecasinopromos.top
*.onlinecasinopromos.top
*.ey.tyesi.com
*.s.tyesi.com
tyesi.com
*.tyesi.com
*.backup.wingede.pro
*.demo.wingede.pro
*.dev.wingede.pro
*.staging.wingede.pro
*.test.wingede.pro
*.uat.wingede.pro
wingede.pro
*.wingede.pro
*.www.wingede.pro
*.bot.xr-radius.com
*.new.xr-radius.com
*.test.xr-radius.com
xr-radius.com
*.xr-radius.com
Other domains in certificate