Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=annuity2025.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 16, 2026
Valid Until
August 14, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
87:51:CB:F9:7F:93:E4:65:4E:19:DA:BA:01:3C:8C:81:82:35:70:E1:95:1D:AB:D5:E5:81:09:9D:E2:E9:B5:40
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
inboxnotifi.com
*.inboxnotifi.com
37winbet.top
*.37winbet.top
64890.co
*.64890.co
65463.one
*.65463.one
68gbet.top
*.68gbet.top
69thbet.top
*.69thbet.top
*.gkms1a.69thbet.top
annuity2025.shop
*.annuity2025.shop
antalyavitrin.vip
*.antalyavitrin.vip
cialisvbuy.com
*.cialisvbuy.com
cloudyraja33.xyz
*.cloudyraja33.xyz
dds51.vip
*.dds51.vip
demobilite.org
*.demobilite.org
djynj.cc
*.djynj.cc
fabllewavi.com
*.fabllewavi.com
fhjopjtye.cc
*.fhjopjtye.cc
fja8sk.cyou
*.fja8sk.cyou
fototravels.info
*.fototravels.info
gasing777-putar.xyz
*.gasing777-putar.xyz
gj8bs3.top
*.gj8bs3.top
gojiitogo.com
*.gojiitogo.com
hartfordriskreport.one
*.hartfordriskreport.one
heng-36bet.top
*.heng-36bet.top
hortusquaerens.art
*.hortusquaerens.art
irebojunpa.com
*.irebojunpa.com
p52bet.cc
*.p52bet.cc
p62bet.vip
*.p62bet.vip
p6bet.top
*.p6bet.top
pay69bet.vip
*.pay69bet.vip
prestigesunsetpark.live
*.prestigesunsetpark.live
pxjbet.top
*.pxjbet.top
pyxy.com
*.pyxy.com
sexygame992bet.top
*.sexygame992bet.top
sjiujs.shop
*.sjiujs.shop
splashawaybay.com
*.splashawaybay.com
stylemailar.com
*.stylemailar.com
sugardefender24h.live
*.sugardefender24h.live
tax-debt-relief-service.click
*.tax-debt-relief-service.click
tbtk798.com
*.tbtk798.com
tervolalainen.com
*.tervolalainen.com
th77bet.top
*.th77bet.top
tipobet-tr-giris.mobi
*.tipobet-tr-giris.mobi
tmb77bet.top
*.tmb77bet.top
transformationcoaching.me
*.transformationcoaching.me
twynk.store
*.twynk.store
Other domains in certificate