Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=06272.top
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 10, 2026
Valid Until
September 08, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:4D:E4:9E:19:FF:8C:04:E0:D4:B4:1D:7B:DA:B1:AA:8E:43:E6:66:08:AB:5F:83:B7:50:93:6C:3E:AB:6A:CA
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
87 domains
lieyong.com
*.lieyong.com
06272.top
*.06272.top
11079.my
*.11079.my
18743.my
*.18743.my
212559.my
*.212559.my
23131.my
*.23131.my
24087.my
*.24087.my
2p15z.lol
*.2p15z.lol
5379107.cc
*.5379107.cc
91357.vip
*.91357.vip
aliexpressteams.com
*.aliexpressteams.com
iz6kzy.cc
*.iz6kzy.cc
jinlixiyi.com
*.jinlixiyi.com
jitocy.pro
*.jitocy.pro
karetocezeza.org
*.karetocezeza.org
katherinejuanlld.com
*.katherinejuanlld.com
kokxox.com
*.kokxox.com
larqbottles.online
*.larqbottles.online
laurelmarketing.com
*.laurelmarketing.com
*.ebay.locksmithsindenver.com
locksmithsindenver.com
*.locksmithsindenver.com
lorettabyr.info
*.lorettabyr.info
mbeauty.life
*.mbeauty.life
meetpipefile.xyz
*.meetpipefile.xyz
mixamprinting.online
*.mixamprinting.online
moventraq.co
*.moventraq.co
tailoredtravelplans.live
*.tailoredtravelplans.live
tashan.vip
*.tashan.vip
thedealoriginatorshq.click
*.thedealoriginatorshq.click
truecanadapath.org
*.truecanadapath.org
tryquantumtrading.com
*.tryquantumtrading.com
ultimatumeats.food
*.ultimatumeats.food
vay-tienvietnam.today
*.vay-tienvietnam.today
vbduf.info
*.vbduf.info
veydra.studio
*.veydra.studio
winrey.xyz
*.winrey.xyz
wjaxmq.town
*.wjaxmq.town
wwgec.my
*.wwgec.my
wwwarb5.xyz
*.wwwarb5.xyz
wwwqm317.com
*.wwwqm317.com
xerioassa.com
*.xerioassa.com
xgely.work
*.xgely.work
xhlcp.my
*.xhlcp.my
xn--laan-9sa.co
*.xn--laan-9sa.co
Other domains in certificate