Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cushioncut.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:9E:BD:5A:B1:E4:6A:90:33:53:50:A8:15:87:6D:98:6B:D6:6B:4F:AD:97:7D:20:9A:51:07:26:31:D0:2D:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
darkxalora.tech
*.darkxalora.tech
cushioncut.co
*.cushioncut.co
cvghe.academy
*.cvghe.academy
cvghf.academy
*.cvghf.academy
cyber-security-course-br.click
*.cyber-security-course-br.click
cyprusholidayrent.com
*.cyprusholidayrent.com
cytv90.com
*.cytv90.com
czeka.my
*.czeka.my
dargk.cc
*.dargk.cc
dark-shop.com
*.dark-shop.com
darksideup.it
*.darksideup.it
darkworld.it
*.darkworld.it
darlingtonhotels.com
*.darlingtonhotels.com
darreya.com
*.darreya.com
darxop.com
*.darxop.com
dbs0886.lat
*.dbs0886.lat
deliciousfoodhub.cyou
*.deliciousfoodhub.cyou
delightfulfoodadventures.cfd
*.delightfulfoodadventures.cfd
desert-safari-723504442.click
*.desert-safari-723504442.click
desettosos-kr.shop
*.desettosos-kr.shop
directorylotus.com
*.directorylotus.com
directtoirmails.xyz
*.directtoirmails.xyz
directtoiroffices.xyz
*.directtoiroffices.xyz
discountcodenhs.com
*.discountcodenhs.com
discover-world.help
*.discover-world.help
diyalog.club
*.diyalog.club
diycraftsideas.xyz
*.diycraftsideas.xyz
djerwymkljgbdrg.cc
*.djerwymkljgbdrg.cc
dmg33.top
*.dmg33.top
dmwhjwo2rwfsadt.top
*.dmwhjwo2rwfsadt.top
domaintrack.com
*.domaintrack.com
door-job-agent-mx.buzz
*.door-job-agent-mx.buzz
doors-maps-kzz.click
*.doors-maps-kzz.click
dowlatex.com
*.dowlatex.com
dr-sadafi.com
*.dr-sadafi.com
dreamweddingvows.sbs
*.dreamweddingvows.sbs
driverservices.in
*.driverservices.in
drunk-driving-820386779.click
*.drunk-driving-820386779.click
dtedw2ez.top
*.dtedw2ez.top
dtslxdt1232.vip
*.dtslxdt1232.vip
dunlvwang.com
*.dunlvwang.com
duyentram.com
*.duyentram.com
e5428979.vip
*.e5428979.vip
e5472589.vip
*.e5472589.vip
darkfiora.it.com
*.darkfiora.it.com
Other domains in certificate