Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=shoppinggiftcom.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026 72 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6F:2C:4C:53:37:AF:12:91:FE:C1:C7:CC:C6:3B:BB:A4:26:9E:AD:90:F2:5B:9A:5A:D3:11:AE:94:F4:B4:E9:8D
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
bengui.com *.bengui.com *.api.bengui.com *.beta.bengui.com *.test.bengui.com

Other domains in certificate

005238a5.shop *.005238a5.shop *.com.005238a5.shop
*.backup.borlu.com *.beta.borlu.com *.blog.borlu.com borlu.com *.borlu.com *.dev.borlu.com *.test.borlu.com
*.api.caricaautoelettriche.com caricaautoelettriche.com *.caricaautoelettriche.com *.demo.caricaautoelettriche.com
*.431ec.kzgamer.site *.ceg.kzgamer.site *.dilr.kzgamer.site *.f35e4.kzgamer.site *.f4e96bb1.kzgamer.site *.fux.kzgamer.site *.fyw.kzgamer.site *.gaxz.kzgamer.site *.gemb.kzgamer.site *.gynu.kzgamer.site *.has.kzgamer.site *.kor.kzgamer.site *.kulr.kzgamer.site kzgamer.site *.kzgamer.site *.nef.kzgamer.site *.podk.kzgamer.site *.rem.kzgamer.site *.rokk.kzgamer.site *.rx.kzgamer.site *.seb.kzgamer.site *.store.kzgamer.site *.summ.kzgamer.site *.tew.kzgamer.site *.vuc.kzgamer.site *.xact.kzgamer.site *.xaz.kzgamer.site *.xet.kzgamer.site *.xid.kzgamer.site *.zyg.kzgamer.site
*.big-brother-fotos-vip-a.leftman.com *.club-dc-vip.leftman.com *.club-sex-vip-a.leftman.com leftman.com *.leftman.com *.room-video-vip.leftman.com *.test.leftman.com
neuronio.com *.neuronio.com *.vpn.neuronio.com
*.api.neurotracker.com *.hostmaster.neurotracker.com neurotracker.com *.neurotracker.com *.test.neurotracker.com *.web.neurotracker.com *.ww38.neurotracker.com
*.bdifhmail.pixaldrain.cc pixaldrain.cc *.pixaldrain.cc *.whm.pixaldrain.cc *.ww25.pixaldrain.cc
*.mail.qurantester.info qurantester.info *.qurantester.info *.rustore.qurantester.info *.tools.qurantester.info
*.eazyshop.shoppinggiftcom.xyz shoppinggiftcom.xyz *.shoppinggiftcom.xyz *.sitemap.shoppinggiftcom.xyz *.ww25.shoppinggiftcom.xyz
*.api.uzushio.com *.root.uzushio.com *.rustore.uzushio.com *.test.uzushio.com uzushio.com *.uzushio.com
*.random.votingmachines.it votingmachines.it *.votingmachines.it