Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=bot-santuy.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 27, 2026
Valid Until
April 27, 2026 62 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:A3:1E:C3:B8:4F:47:E1:F1:69:03:16:B7:0B:3A:61:44:0D:66:B3:20:43:EC:C0:85:C5:FA:4B:60:3D:B9:AF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
aff005.cool *.aff005.cool *.50.aff005.cool *.7u.aff005.cool *.ant.aff005.cool *.cg.aff005.cool *.desktop.aff005.cool *.didi.aff005.cool *.dsp.aff005.cool *.fans.aff005.cool *.flj.aff005.cool *.gv.aff005.cool *.mv.aff005.cool *.sir.aff005.cool *.ttt.aff005.cool *.yhy.aff005.cool *.zpc.aff005.cool

Other domains in certificate

*.acc.allin1e.com allin1e.com *.allin1e.com *.alpha.allin1e.com *.ci.allin1e.com *.cicd.allin1e.com *.downloads.allin1e.com *.pipeline.allin1e.com *.remote.allin1e.com *.smtp-relay.allin1e.com *.ww25.allin1e.com
bestthemeparks.org *.bestthemeparks.org *.wildcard.bestthemeparks.org
*.api.bot-santuy.xyz *.backend.bot-santuy.xyz bot-santuy.xyz *.bot-santuy.xyz *.wildcard.bot-santuy.xyz *.ww25.bot-santuy.xyz
cacokeiyedistrict.com *.cacokeiyedistrict.com *.cpanel.cacokeiyedistrict.com *.www.cacokeiyedistrict.com
*.cloud.coventrycity.com coventrycity.com *.coventrycity.com *.demo.coventrycity.com *.forum.coventrycity.com *.hostmaster.coventrycity.com *.ww38.coventrycity.com *.ww43.coventrycity.com *.ww6.coventrycity.com
deltamath.co *.deltamath.co *.wildcard.deltamath.co
friday-deals.top *.friday-deals.top *.www.friday-deals.top
*.connect.glenvaleschool.com.au glenvaleschool.com.au *.glenvaleschool.com.au *.mail.glenvaleschool.com.au *.random.glenvaleschool.com.au *.tw.glenvaleschool.com.au *.ww16.glenvaleschool.com.au
*.cicd.itasoftware.co *.demo.itasoftware.co itasoftware.co *.itasoftware.co *.matrix.itasoftware.co *.wildcard.itasoftware.co
*.cpcalendars.japanese-language.info japanese-language.info *.japanese-language.info
*.g.oanu.com oanu.com *.oanu.com
*.magento.sexyplanner.com *.random.sexyplanner.com sexyplanner.com *.sexyplanner.com *.www.sexyplanner.com
*.demo.ticketsmaster.es *.hostmaster.ticketsmaster.es *.secure.ticketsmaster.es *.staging.ticketsmaster.es ticketsmaster.es *.ticketsmaster.es *.webmail.ticketsmaster.es *.ww25.ticketsmaster.es *.www.ticketsmaster.es