Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fdnza.pro
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
27:21:CD:23:E3:83:1F:D0:B8:29:B5:83:53:84:70:46:91:CD:A3:05:E3:6F:DE:31:76:0C:79:78:EB:0B:66:C5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
presentwithimpact.com
*.presentwithimpact.com
*.antispam.pustak.co.in
pustak.co.in
*.pustak.co.in
empowhermusicfestival.com
*.empowhermusicfestival.com
engineeredwood.in
*.engineeredwood.in
equalpioneers.cfd
*.equalpioneers.cfd
equatortoarctic.com
*.equatortoarctic.com
ethrd.vip
*.ethrd.vip
evfbpy.shop
*.evfbpy.shop
farmalytics.us
*.farmalytics.us
fdnza.pro
*.fdnza.pro
fgp.me
*.fgp.me
first-law-01.boutique
*.first-law-01.boutique
fitnessforlife.it
*.fitnessforlife.it
fitnesslifestylemovement.run
*.fitnesslifestylemovement.run
fivelittlebears.com
*.fivelittlebears.com
flyvair.com
*.flyvair.com
fordealzbce.shop
*.fordealzbce.shop
pcdaq.com
*.pcdaq.com
pegas.me
*.pegas.me
peladita.com
*.peladita.com
pelismaraton.one
*.pelismaraton.one
pencak-silat.net
*.pencak-silat.net
pendantbrown.com
*.pendantbrown.com
peoriamason.com
*.peoriamason.com
peoriamasons.com
*.peoriamasons.com
pepitolaflorestaurante.com
*.pepitolaflorestaurante.com
perfectrwa.com
*.perfectrwa.com
personal-injury-lawyer-at-2618.xyz
*.personal-injury-lawyer-at-2618.xyz
personalrights.it
*.personalrights.it
petcarepassport.asia
*.petcarepassport.asia
phanphan.xyz
*.phanphan.xyz
phlognfy.com
*.phlognfy.com
photonet.ai
*.photonet.ai
phpeveryday.com
*.phpeveryday.com
piersixtysixcondo.com
*.piersixtysixcondo.com
play-beta-vault.xyz
*.play-beta-vault.xyz
play-cobalt-adventure.xyz
*.play-cobalt-adventure.xyz
play-crimson-territory.xyz
*.play-crimson-territory.xyz
play-drift-venture.xyz
*.play-drift-venture.xyz
play-radiant-expedition.xyz
*.play-radiant-expedition.xyz
play-raven-trail.xyz
*.play-raven-trail.xyz
pluvio.co
*.pluvio.co
pniaragaronisasdalonplay.cyou
*.pniaragaronisasdalonplay.cyou
pornhubb.co
*.pornhubb.co
Other domains in certificate