Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=2xff4n.cyou
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B6:F8:BD:1E:18:BE:00:F3:A9:40:12:33:97:D0:18:0B:44:98:F5:21:DE:0B:0D:3A:C7:50:00:0B:9B:5E:93:3B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
aiqheart.com
*.aiqheart.com
2xff4n.cyou
*.2xff4n.cyou
307139.co
*.307139.co
345612.club
*.345612.club
543602.qpon
*.543602.qpon
62116.lgbt
*.62116.lgbt
813w.art
*.813w.art
8p1g6u8j1.cc
*.8p1g6u8j1.cc
938858e.xyz
*.938858e.xyz
ag005.net
*.ag005.net
agjwn.gdn
*.agjwn.gdn
b89d.cyou
*.b89d.cyou
bturkhubb.cfd
*.bturkhubb.cfd
cable290.cc
*.cable290.cc
catgirlcompany.info
*.catgirlcompany.info
copek.bid
*.copek.bid
counteasyts.co.uk
*.counteasyts.co.uk
csc30072.cc
*.csc30072.cc
ctmjmho.com
*.ctmjmho.com
differ-clearly-measure-beautiful.run
*.differ-clearly-measure-beautiful.run
digitlift.com
*.digitlift.com
doggshouses.life
*.doggshouses.life
e88i.club
*.e88i.club
eastroyaintl.com
*.eastroyaintl.com
engineer-jobs-ch-915t6.shop
*.engineer-jobs-ch-915t6.shop
f64145726.com
*.f64145726.com
globalwalesexpresslogistics.com
*.globalwalesexpresslogistics.com
harmonicmind.info
*.harmonicmind.info
hfgfbd.blog
*.hfgfbd.blog
hvsjw.cc
*.hvsjw.cc
hyper-cyberbeam.xyz
*.hyper-cyberbeam.xyz
ireclaim.co
*.ireclaim.co
luxury-watches-selection-177.sbs
*.luxury-watches-selection-177.sbs
mct26.icu
*.mct26.icu
mediaincome.com
*.mediaincome.com
mt04.xyz
*.mt04.xyz
pohon8-amp.help
*.pohon8-amp.help
preman69-rtpjos4.shop
*.preman69-rtpjos4.shop
rymori.com
*.rymori.com
treating-low-back-pain-jp.xyz
*.treating-low-back-pain-jp.xyz
tw-linevoomp.cfd
*.tw-linevoomp.cfd
umveh.app
*.umveh.app
unityfoodnetwork.food
*.unityfoodnetwork.food
Other domains in certificate