Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=132753.cc
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:97:82:AA:32:E0:A1:8C:95:21:5A:74:B6:4F:60:DA:85:31:7E:96:90:F4:E4:48:6A:1A:2D:0C:62:FC:A5:93
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
app-lys.com
*.app-lys.com
132753.cc
*.132753.cc
46778.my
*.46778.my
617520.co
*.617520.co
6h2130a4.sbs
*.6h2130a4.sbs
98631.loan
*.98631.loan
adswithredditnetwork.co
*.adswithredditnetwork.co
aiqwash.com
*.aiqwash.com
akabet.vip
*.akabet.vip
alem.bet
*.alem.bet
alternative-structures.biz
*.alternative-structures.biz
appliance-repair-service-ca.click
*.appliance-repair-service-ca.click
appsalestalentgroup.business
*.appsalestalentgroup.business
aqcigar.com
*.aqcigar.com
aqcommerce.com
*.aqcommerce.com
aqinternet.com
*.aqinternet.com
chatglpt.com
*.chatglpt.com
clearfitnessgoals.club
*.clearfitnessgoals.club
coinearm.com
*.coinearm.com
d2h2.cc
*.d2h2.cc
destinationvalueadvisors.live
*.destinationvalueadvisors.live
diagonal.bio
*.diagonal.bio
omxin.com
*.omxin.com
pressresponse.xyz
*.pressresponse.xyz
purevision.digital
*.purevision.digital
pwnsp.xyz
*.pwnsp.xyz
radianthometuition.com
*.radianthometuition.com
rummy-ola.it.com
*.rummy-ola.it.com
sahambank.org
*.sahambank.org
sporligtv606.live
*.sporligtv606.live
sporligtv614.live
*.sporligtv614.live
streetbowl.info
*.streetbowl.info
studtravel.com
*.studtravel.com
successful.mom
*.successful.mom
toysplay.shop
*.toysplay.shop
transformind.com
*.transformind.com
travelvaluefocus.live
*.travelvaluefocus.live
trumpington.org
*.trumpington.org
tylerglasnow.com
*.tylerglasnow.com
unionessence.beauty
*.unionessence.beauty
videojournalclick.xyz
*.videojournalclick.xyz
winwithbridgecoo.business
*.winwithbridgecoo.business
workcontractor.company
*.workcontractor.company
yrk4i1.cyou
*.yrk4i1.cyou
Other domains in certificate