Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=beartronic.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 10, 2026
Valid Until
May 11, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5F:6C:E1:0F:E1:92:C5:19:11:7E:1D:39:7D:2E:73:E5:F7:75:28:96:CD:96:F5:01:C9:2D:87:A8:6E:1E:AC:D5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aiidyll.com
*.aiidyll.com
27248978.top
*.27248978.top
50434.co
*.50434.co
56232.top
*.56232.top
572318.club
*.572318.club
76622.app
*.76622.app
77news.org
*.77news.org
871863.com
*.871863.com
882537.cc
*.882537.cc
894cs1.top
*.894cs1.top
action9news.com
*.action9news.com
agridata.online
*.agridata.online
ai10xaccelerator.com
*.ai10xaccelerator.com
antiqueinfo.com
*.antiqueinfo.com
automi-ai.com
*.automi-ai.com
beartronic.com
*.beartronic.com
bucetando.com
*.bucetando.com
cannayoni.com
*.cannayoni.com
chompincash.com
*.chompincash.com
classicdollhouse.com
*.classicdollhouse.com
commercialsolarpowersystem.com
*.commercialsolarpowersystem.com
costworks.com
*.costworks.com
dafawz20.com
*.dafawz20.com
deadmandownmovie.com
*.deadmandownmovie.com
domainerx.com
*.domainerx.com
ecotechconstruction.com
*.ecotechconstruction.com
eloncountry.com
*.eloncountry.com
empleomx.com
*.empleomx.com
englishtranslators.in
*.englishtranslators.in
f5ow5cqp.top
*.f5ow5cqp.top
fantasysportsleagues.vip
*.fantasysportsleagues.vip
fathair.com
*.fathair.com
fetch.fyi
*.fetch.fyi
followon.it
*.followon.it
fomoius.com
*.fomoius.com
g58lzk.co
*.g58lzk.co
g9741.cc
*.g9741.cc
gadicin.com
*.gadicin.com
sparksocialclub.org
*.sparksocialclub.org
spotcher.com
*.spotcher.com
studiomosaicmeta.cc
*.studiomosaicmeta.cc
tagpay.site
*.tagpay.site
traiteau.be
*.traiteau.be
tricked.org
*.tricked.org
xvpornvids.com
*.xvpornvids.com
Other domains in certificate