Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=baldnesstreatment.in
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2A:34:A0:23:57:BA:0D:08:84:46:B4:2D:CE:B5:86:6F:37:78:45:6C:75:B1:3A:1C:6D:69:A3:5C:56:07:57:D9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
anpec.org
*.anpec.org
39782.net
*.39782.net
409713.vip
*.409713.vip
535678.work
*.535678.work
5432jjj.com
*.5432jjj.com
59292.net
*.59292.net
651774.one
*.651774.one
66807.loan
*.66807.loan
707998dh1.shop
*.707998dh1.shop
75077.work
*.75077.work
81342.co
*.81342.co
92254.loan
*.92254.loan
977718a2.sbs
*.977718a2.sbs
ad8n5eo.cyou
*.ad8n5eo.cyou
adlertiserhub.com
*.adlertiserhub.com
advancex-form.com
*.advancex-form.com
affordabletraveladventures.live
*.affordabletraveladventures.live
airportcodes.it
*.airportcodes.it
aladin138-sh.xyz
*.aladin138-sh.xyz
amenorrea.it
*.amenorrea.it
analyhit.click
*.analyhit.click
angelcity.org
*.angelcity.org
appsw9.xyz
*.appsw9.xyz
asphalt-paving-job-mx-grey.buzz
*.asphalt-paving-job-mx-grey.buzz
autosilos.it
*.autosilos.it
ayoop.gdn
*.ayoop.gdn
baldnesstreatment.in
*.baldnesstreatment.in
bargainmania.it
*.bargainmania.it
betkingoldmobile.vip
*.betkingoldmobile.vip
bhp13.top
*.bhp13.top
blackwedding.it
*.blackwedding.it
bodyease.my
*.bodyease.my
breakingnewsbulletin.cfd
*.breakingnewsbulletin.cfd
buyapartments.it
*.buyapartments.it
buzznews.co
*.buzznews.co
buzzwords.in
*.buzzwords.in
carfuture.it
*.carfuture.it
castmall.com
*.castmall.com
caymanislands.it
*.caymanislands.it
cheap-phone-ar2.click
*.cheap-phone-ar2.click
cremation-gb-2618.click
*.cremation-gb-2618.click
crm-software-de-03.click
*.crm-software-de-03.click
dbx.it
*.dbx.it
defai.computer
*.defai.computer
crisptorla.it.com
*.crisptorla.it.com
Other domains in certificate