Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=08327.lgbt
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 07, 2026
Valid Until
May 08, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
47:2D:14:45:60:77:18:CB:A1:F8:98:BB:89:CC:90:EE:36:79:36:5C:17:F5:A2:32:6D:E5:56:96:F9:22:9D:F9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
agimach.com
*.agimach.com
08327.lgbt
*.08327.lgbt
09061.cc
*.09061.cc
10650.loan
*.10650.loan
11035.loans
*.11035.loans
15117.pizza
*.15117.pizza
18956.locker
*.18956.locker
204790.cc
*.204790.cc
25094.one
*.25094.one
2yun.work
*.2yun.work
42238.plus
*.42238.plus
4380.my
*.4380.my
4doma.site
*.4doma.site
57566.one
*.57566.one
583267.top
*.583267.top
6078003.cc
*.6078003.cc
67052.loans
*.67052.loans
68453.loan
*.68453.loan
69550.academy
*.69550.academy
700109.xyz
*.700109.xyz
72094.loan
*.72094.loan
7am8ls.top
*.7am8ls.top
7tc39eye.top
*.7tc39eye.top
820318.club
*.820318.club
87226.biz
*.87226.biz
88282679.top
*.88282679.top
9969dh6.vip
*.9969dh6.vip
ad-gaming.site
*.ad-gaming.site
adrienlambert.com
*.adrienlambert.com
asdn.site
*.asdn.site
asrfdfgf.work
*.asrfdfgf.work
autobanforum.xyz
*.autobanforum.xyz
k5b6.cc
*.k5b6.cc
krkm2.co
*.krkm2.co
krlmvb.academy
*.krlmvb.academy
liftapp.lol
*.liftapp.lol
pharmaceutical-packaging-11.click
*.pharmaceutical-packaging-11.click
playwin46.com
*.playwin46.com
poolclub.it
*.poolclub.it
portalst.sbs
*.portalst.sbs
q3gtono2ermn5chb1s137f.com
*.q3gtono2ermn5chb1s137f.com
rajapkr88.site
*.rajapkr88.site
reamingcommunity.buzz
*.reamingcommunity.buzz
rgiqa.gdn
*.rgiqa.gdn
rst43.top
*.rst43.top
Other domains in certificate