Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=86219.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B7:59:9F:F1:F9:64:FD:10:60:7D:ED:7A:07:EE:83:DC:17:48:61:7E:F6:33:BB:8C:E7:8F:60:0D:C4:53:92:7B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
agvyt.com
*.agvyt.com
86219.net
*.86219.net
899crxy301.top
*.899crxy301.top
8day.ceo
*.8day.ceo
91354.locker
*.91354.locker
9229.my
*.9229.my
96xhd3dnbvby.com
*.96xhd3dnbvby.com
9playlistcharts.com
*.9playlistcharts.com
9pp.xyz
*.9pp.xyz
9w1ud.vip
*.9w1ud.vip
aasvwrx918.vip
*.aasvwrx918.vip
abdounpanorama.com
*.abdounpanorama.com
admin77idaman.sbs
*.admin77idaman.sbs
adventureisoutthere.it
*.adventureisoutthere.it
agesgo.com
*.agesgo.com
agltcoin.org
*.agltcoin.org
alternativedating.it
*.alternativedating.it
altitudefintrust.info
*.altitudefintrust.info
ambigua.it
*.ambigua.it
anakslotgacor.com
*.anakslotgacor.com
anassshop.xyz
*.anassshop.xyz
antipolyneuritic.com
*.antipolyneuritic.com
appue8.xyz
*.appue8.xyz
architect.one
*.architect.one
ardenttalent.com
*.ardenttalent.com
cheap-phone-pe1.click
*.cheap-phone-pe1.click
cozycircuit.com
*.cozycircuit.com
cqsu5bxfpnh438unuhqg.com
*.cqsu5bxfpnh438unuhqg.com
daascenter.com
*.daascenter.com
datakick.click
*.datakick.click
dazar.it
*.dazar.it
geneticist.it
*.geneticist.it
hypabxcom.com
*.hypabxcom.com
i4ti.org
*.i4ti.org
nagua.it
*.nagua.it
omeganove.it
*.omeganove.it
opentopertempssite.com
*.opentopertempssite.com
play-tiger-quest.xyz
*.play-tiger-quest.xyz
powergain.it
*.powergain.it
rocxnsgy.xyz
*.rocxnsgy.xyz
teethwhitening.it
*.teethwhitening.it
tyresdepots.my
*.tyresdepots.my
xc0ctrr.shop
*.xc0ctrr.shop
youshouldbehere.it
*.youshouldbehere.it
yzf.it
*.yzf.it
Other domains in certificate