Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=autopower.us
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 27, 2026
Valid Until
June 25, 2026
32 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
69:0D:93:F2:5D:17:CA:19:88:3F:B2:4F:B1:87:D1:75:33:04:1A:2B:14:2E:EB:6F:35:5B:56:80:74:63:A8:62
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
giuliocosta.com
*.giuliocosta.com
836527.fyi
*.836527.fyi
87438.blog
*.87438.blog
92.legal
*.92.legal
93132.pizza
*.93132.pizza
93763408.vip
*.93763408.vip
97trr.com
*.97trr.com
acallingtothepeople.org
*.acallingtothepeople.org
autopower.us
*.autopower.us
avocats.biz
*.avocats.biz
azcreditcards.com
*.azcreditcards.com
baoyu129.co
*.baoyu129.co
beach.biz
*.beach.biz
bigapple.biz
*.bigapple.biz
boxybag.com
*.boxybag.com
c7ehgqb7e6.world
*.c7ehgqb7e6.world
canned-air.net
*.canned-air.net
csmya.com
*.csmya.com
d83gejt.cyou
*.d83gejt.cyou
findwithgobravescale.pro
*.findwithgobravescale.pro
fpeksd594.vip
*.fpeksd594.vip
ftv87.icu
*.ftv87.icu
g2c.club
*.g2c.club
galvonixtrader-30-titan.cyou
*.galvonixtrader-30-titan.cyou
gaming-pc-011.sbs
*.gaming-pc-011.sbs
ghibli.one
*.ghibli.one
gjhext396.vip
*.gjhext396.vip
gumnong.com
*.gumnong.com
hgjmh.qpon
*.hgjmh.qpon
hm-skinbeautiful.com
*.hm-skinbeautiful.com
horatius.com
*.horatius.com
hqsmw.cn
*.hqsmw.cn
humicaosh.xyz
*.humicaosh.xyz
humpar.org
*.humpar.org
uxzzps.gdn
*.uxzzps.gdn
vsfih.co
*.vsfih.co
wfhmagazine.com
*.wfhmagazine.com
*.demo.woodlandresorts.in
woodlandresorts.in
*.woodlandresorts.in
wtcinternational.org
*.wtcinternational.org
x644.com
*.x644.com
xoowt.sx
*.xoowt.sx
xpuengine.com
*.xpuengine.com
xpumarket.com
*.xpumarket.com
xxrbhf51ab4c4d9d.xyz
*.xxrbhf51ab4c4d9d.xyz
Other domains in certificate