Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=sjzltsg.pro
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C7:1F:06:29:22:14:70:1D:93:A2:FF:2F:01:63:6C:F7:64:3D:14:CF:A7:BC:FF:42:E4:3F:5E:68:7A:71:A6:B5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sqlczone.xyz
*.sqlczone.xyz
sjzltsg.pro
*.sjzltsg.pro
skillzennest.org
*.skillzennest.org
skybeauty.net
*.skybeauty.net
smartinvestgrowth.cyou
*.smartinvestgrowth.cyou
smartphones.repair
*.smartphones.repair
soc4ads.com
*.soc4ads.com
socadszz.buzz
*.socadszz.buzz
socflowz.xyz
*.socflowz.xyz
solarpath360.com
*.solarpath360.com
soulgardeningconnection.xyz
*.soulgardeningconnection.xyz
sovxy.tv
*.sovxy.tv
spacecase.live
*.spacecase.live
sparza.com
*.sparza.com
sportmerchandise.org
*.sportmerchandise.org
sportsfitness.it
*.sportsfitness.it
sqleczone.buzz
*.sqleczone.buzz
ssjsktkiqqqo.com
*.ssjsktkiqqqo.com
ssr10ngo4.com
*.ssr10ngo4.com
starblazequest.com
*.starblazequest.com
starcraft-hispano.com
*.starcraft-hispano.com
strategiccareerpath.xyz
*.strategiccareerpath.xyz
stuniosdalpro.shop
*.stuniosdalpro.shop
stylemode.it
*.stylemode.it
stylograph.it
*.stylograph.it
superprimetravel.com
*.superprimetravel.com
suziemoore.com
*.suziemoore.com
sweetpetscorner.live
*.sweetpetscorner.live
swissappstore.com
*.swissappstore.com
t05slot.cc
*.t05slot.cc
t3629.com
*.t3629.com
teank.pro
*.teank.pro
tech-advisory.info
*.tech-advisory.info
technicalwriter.in
*.technicalwriter.in
temporario.shop
*.temporario.shop
tengri.it
*.tengri.it
terramayhome.com
*.terramayhome.com
teverkin.com
*.teverkin.com
tggreenhomes.com
*.tggreenhomes.com
thegioirik88.biz
*.thegioirik88.biz
thinkazai.com
*.thinkazai.com
thisistinfo.com
*.thisistinfo.com
thrivesynergyfitness.run
*.thrivesynergyfitness.run
tiimit.xyz
*.tiimit.xyz
tinyviral.my
*.tinyviral.my
Other domains in certificate