Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=apple-partner-portal-login.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 19, 2026
Valid Until
August 17, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D0:F2:61:23:A9:D0:39:E5:84:C3:EE:C2:EA:B4:B3:10:E0:E7:5D:80:37:C3:C5:D3:D8:EA:FF:D6:8E:9D:9F:F7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
xs617.com
*.xs617.com
*.akyuqsour.xs617.com
*.ant.xs617.com
*.art.xs617.com
*.backoffice.xs617.com
*.bedroom.xs617.com
*.better.xs617.com
*.bird.xs617.com
*.body.xs617.com
*.ci.xs617.com
*.cold.xs617.com
*.cong.xs617.com
*.cookie.xs617.com
*.cusfymang.xs617.com
*.dress.xs617.com
*.drink.xs617.com
*.duo.xs617.com
*.glxgtfind.xs617.com
*.great.xs617.com
*.happy.xs617.com
*.have.xs617.com
*.how.xs617.com
*.ill.xs617.com
*.jeep.xs617.com
*.juice.xs617.com
*.ke.xs617.com
*.kitchen.xs617.com
*.kite.xs617.com
*.kqkfcmai.xs617.com
*.locations.xs617.com
*.lvgwxgmcaidwrjslock.xs617.com
*.make.xs617.com
*.mirror.xs617.com
*.music.xs617.com
*.near.xs617.com
*.notebook.xs617.com
*.panda.xs617.com
*.pao.xs617.com
*.path.xs617.com
*.quan.xs617.com
*.red.xs617.com
*.send.xs617.com
*.slept.xs617.com
*.smaller.xs617.com
*.socks.xs617.com
*.three.xs617.com
*.tong.xs617.com
*.twenty.xs617.com
*.two.xs617.com
*.underground.xs617.com
*.water.xs617.com
*.whose.xs617.com
*.zhuai.xs617.com
agentic.menu
*.agentic.menu
*.akwufsmtpauth.agentic.menu
*.mailer.agentic.menu
*.mailserver.agentic.menu
*.mbox.agentic.menu
*.panel.agentic.menu
*.smtpauth.agentic.menu
*.wap.agentic.menu
apple-partner-portal-login.com
*.apple-partner-portal-login.com
*.com.apple-partner-portal-login.com
*.comcomww25.apple-partner-portal-login.com
*.comww25.apple-partner-portal-login.com
*.cpcalendars.apple-partner-portal-login.com
*.ftp.apple-partner-portal-login.com
*.ww38.apple-partner-portal-login.com
*.ads.scrappydogscooters.com
*.auth.scrappydogscooters.com
*.ftp.scrappydogscooters.com
*.it.scrappydogscooters.com
*.konkurs.scrappydogscooters.com
*.lib.scrappydogscooters.com
*.movies.scrappydogscooters.com
*.openvpn.scrappydogscooters.com
*.outbound.scrappydogscooters.com
*.rz.scrappydogscooters.com
scrappydogscooters.com
*.scrappydogscooters.com
*.status.scrappydogscooters.com
*.ww.scrappydogscooters.com
*.ww25.scrappydogscooters.com
*.xl.scrappydogscooters.com
*.zsj.scrappydogscooters.com
Other domains in certificate