Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=26927141.vip
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 19, 2026
Valid Until
August 17, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
0B:B0:92:03:30:1F:24:9C:2F:85:95:DA:60:EF:F7:C9:5B:92:2E:16:CD:D9:2E:B9:40:91:2B:F1:1C:D3:12:78
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
aiouresults.com
*.aiouresults.com
26927141.vip
*.26927141.vip
27220541.vip
*.27220541.vip
27333692.vip
*.27333692.vip
27563996.vip
*.27563996.vip
27914879.vip
*.27914879.vip
28252.blog
*.28252.blog
3pattimania.top
*.3pattimania.top
420142.club
*.420142.club
46902.win
*.46902.win
49668.my
*.49668.my
52097.blog
*.52097.blog
54141.loan
*.54141.loan
54914.one
*.54914.one
5719hh.cc
*.5719hh.cc
57d9.com
*.57d9.com
59801.loan
*.59801.loan
59819.blog
*.59819.blog
63734.buzz
*.63734.buzz
638792.loan
*.638792.loan
65451.vip
*.65451.vip
66350.blog
*.66350.blog
71029.win
*.71029.win
74158.loan
*.74158.loan
75250.one
*.75250.one
76002.blog
*.76002.blog
763603.blog
*.763603.blog
76gegcm2b.top
*.76gegcm2b.top
82572.loan
*.82572.loan
835884.blog
*.835884.blog
86125.blog
*.86125.blog
97950.one
*.97950.one
9bm.me
*.9bm.me
a3001.cc
*.a3001.cc
accordfitness.run
*.accordfitness.run
adult-only-hotels-it-1148.sbs
*.adult-only-hotels-it-1148.sbs
aiqdefense.com
*.aiqdefense.com
airtickets.mobi
*.airtickets.mobi
allslot8.info
*.allslot8.info
alohas.sale
*.alohas.sale
amjsb.auction
*.amjsb.auction
amurside.com
*.amurside.com
annalottery1.com
*.annalottery1.com
apexfitnessintegrity.run
*.apexfitnessintegrity.run
aqualuxe.buzz
*.aqualuxe.buzz
Other domains in certificate