Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=003219a5.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
51:3C:31:59:5E:2C:0F:CE:F5:22:4C:30:B9:18:A7:07:33:B6:21:81:06:84:6D:DF:D8:59:17:B9:51:78:02:7C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
3-3.it
*.3-3.it
003219a5.shop
*.003219a5.shop
04468.vip
*.04468.vip
0448.top
*.0448.top
0876app.top
*.0876app.top
1287857.co
*.1287857.co
1309.it
*.1309.it
13127.co
*.13127.co
18672.xyz
*.18672.xyz
197670.vip
*.197670.vip
2014win.com
*.2014win.com
221q.net
*.221q.net
243319.xyz
*.243319.xyz
298033.vip
*.298033.vip
3263h7.com
*.3263h7.com
33353.ac
*.33353.ac
33354.ac
*.33354.ac
33355.ac
*.33355.ac
33362.ac
*.33362.ac
33366.ac
*.33366.ac
4050.my
*.4050.my
40bd049ff33bd9e3.com
*.40bd049ff33bd9e3.com
526398.club
*.526398.club
53556.boston
*.53556.boston
551588.co
*.551588.co
56660.pictures
*.56660.pictures
5min.it
*.5min.it
6-6-6.cyou
*.6-6-6.cyou
60608.co
*.60608.co
63143.pizza
*.63143.pizza
632116.cc
*.632116.cc
642204.vip
*.642204.vip
692804.loan
*.692804.loan
6hawai99.shop
*.6hawai99.shop
704405.net
*.704405.net
71311.net
*.71311.net
71514.net
*.71514.net
71587.net
*.71587.net
721605.net
*.721605.net
7375.my
*.7375.my
75690.shop
*.75690.shop
76873ek2of.xyz
*.76873ek2of.xyz
784040.com
*.784040.com
785bet.pro
*.785bet.pro
79kings.info
*.79kings.info
Other domains in certificate