Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=36201.academy
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 29, 2026
Valid Until
April 29, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
18:0C:67:D3:51:84:C3:F5:6B:19:6F:82:D7:73:94:EB:9A:C6:67:0F:5F:A5:F9:70:7D:8F:17:0B:34:9F:80:C1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
duomelli.com
*.duomelli.com
36201.academy
*.36201.academy
416452.vip
*.416452.vip
47333.top
*.47333.top
553626.buzz
*.553626.buzz
659925.pro
*.659925.pro
68246.net
*.68246.net
684937.buzz
*.684937.buzz
692152.vip
*.692152.vip
70763.loan
*.70763.loan
74913.me
*.74913.me
79464.net
*.79464.net
87692.net
*.87692.net
878413.me
*.878413.me
abcslot.com
*.abcslot.com
ac7a4v.buzz
*.ac7a4v.buzz
agroup-recruit.com
*.agroup-recruit.com
aidvantange.com
*.aidvantange.com
anluomafuy.com
*.anluomafuy.com
aomenxinpujinapp.com
*.aomenxinpujinapp.com
aqustic.com
*.aqustic.com
arcjav.com
*.arcjav.com
asvsexportimport.com
*.asvsexportimport.com
bluecollartrucking.com
*.bluecollartrucking.com
bondsandstocks.com
*.bondsandstocks.com
brightland-oil-gifts.com
*.brightland-oil-gifts.com
broadcasino.com
*.broadcasino.com
canofsex.com
*.canofsex.com
cmzjv.gdn
*.cmzjv.gdn
conduitfinanceteam.com
*.conduitfinanceteam.com
confirmthismail.com
*.confirmthismail.com
contactyscrew.com
*.contactyscrew.com
cookiesapolloio.com
*.cookiesapolloio.com
cookingforbeginnerss.com
*.cookingforbeginnerss.com
cookingstuffss.com
*.cookingstuffss.com
copacobana99pro.com
*.copacobana99pro.com
dailynewsonboard.com
*.dailynewsonboard.com
digitalstove.com
*.digitalstove.com
diijitalzihinler.com
*.diijitalzihinler.com
droidii.com
*.droidii.com
eggeagle.com
*.eggeagle.com
emailingwithdn.com
*.emailingwithdn.com
equinegrass.com
*.equinegrass.com
evawatch.com
*.evawatch.com
evergreenfertility.com
*.evergreenfertility.com
Other domains in certificate