Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=xn--q3cp5cyca3c.net
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 01, 2026
Valid Until
August 30, 2026
88 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:75:BF:34:9A:01:B9:BB:04:5F:B7:8E:43:3F:61:27:19:2F:7B:A9:B3:A4:B9:3D:AA:1B:73:7B:7E:A5:10:3F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
lufthsansa.com
*.lufthsansa.com
*.app.lufthsansa.com
*.old.lufthsansa.com
*.random.lufthsansa.com
*.ww25.lufthsansa.com
*.ww38.lufthsansa.com
australiancpap.com.au
*.australiancpap.com.au
comandohds.org
*.comandohds.org
*.ftp.comandohds.org
gerrydata.org
*.gerrydata.org
*.ww25.gerrydata.org
*.demo.h1s1.com
h1s1.com
*.h1s1.com
*.ww25.h1s1.com
*.biz.heathsun.com
heathsun.com
*.heathsun.com
*.hostmaster.heathsun.com
*.ip.heathsun.com
*.memberportal.heathsun.com
*.mobile.heathsun.com
*.users.heathsun.com
*.ww25.heathsun.com
*.ww38.heathsun.com
*.www.heathsun.com
hwj.com.au
*.hwj.com.au
*.wildcard.hwj.com.au
*.ww25.hwj.com.au
laststepeg.co
*.laststepeg.co
leechninja.com
*.leechninja.com
*.webmail.leechninja.com
*.ww38.leechninja.com
logspott.com
*.logspott.com
*.wildcard.logspott.com
*.ww11.logspott.com
*.ww38.logspott.com
*.admin.mygreatsite.com
*.ai.mygreatsite.com
*.comwww.mygreatsite.com
*.dating.mygreatsite.com
*.foobar.mygreatsite.com
*.hotfix.mygreatsite.com
*.ildcard.mygreatsite.com
*.insight.mygreatsite.com
mygreatsite.com
*.mygreatsite.com
*.network.mygreatsite.com
*.owa.mygreatsite.com
*.panel.mygreatsite.com
*.redclassic.mygreatsite.com
*.sklep.mygreatsite.com
*.uat.mygreatsite.com
*.users.mygreatsite.com
*.ww16.mygreatsite.com
*.www.mygreatsite.com
*.bot.mypemiercreditcard.com
mypemiercreditcard.com
*.mypemiercreditcard.com
*.ww25.mypemiercreditcard.com
*.admin.playstationcard.com
*.forum.playstationcard.com
playstationcard.com
*.playstationcard.com
*.random.playstationcard.com
*.ww25.playstationcard.com
*.ww38.playstationcard.com
*.l.upmy.com
*.nipxw.upmy.com
*.qmsn.upmy.com
*.random.upmy.com
*.remote2.upmy.com
*.sslvpn2.upmy.com
upmy.com
*.upmy.com
*.vjm.upmy.com
*.ww5.upmy.com
vinyasa.com.au
*.vinyasa.com.au
xn--q3cp5cyca3c.net
*.xn--q3cp5cyca3c.net
Other domains in certificate