Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=polymsrket.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 27, 2026
Valid Until
April 27, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1C:B6:66:6D:6C:AF:89:6F:55:62:80:DD:1B:FF:37:52:83:65:F0:1F:AD:6B:B0:F6:C3:56:D1:28:8D:8B:7D:E0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
ep1.com
*.ep1.com
*.aproxy.ep1.com
*.dqxy.ep1.com
*.gz.ep1.com
*.h.ep1.com
*.history.ep1.com
*.lrvz.ep1.com
*.olkn8g.ep1.com
*.so.ep1.com
*.xyzh.ep1.com
*.zz2.ep1.com
*.zzk.ep1.com
10990nline.com
*.10990nline.com
*.ww16.10990nline.com
*.ww38.10990nline.com
*.ads.bhojpurimusic.com
*.b.bhojpurimusic.com
*.backbone.bhojpurimusic.com
bhojpurimusic.com
*.bhojpurimusic.com
*.de.bhojpurimusic.com
*.go.bhojpurimusic.com
*.mail.bhojpurimusic.com
*.pilsnet.bhojpurimusic.com
*.pool.bhojpurimusic.com
*.pro.bhojpurimusic.com
*.search.bhojpurimusic.com
*.speedtest.bhojpurimusic.com
*.status.bhojpurimusic.com
*.survey.bhojpurimusic.com
*.tienda.bhojpurimusic.com
*.ww1.bhojpurimusic.com
*.9j.blackchiney.com
blackchiney.com
*.blackchiney.com
*.mail.blackchiney.com
*.random.blackchiney.com
*.ww1.blackchiney.com
*.au.blondeguys.com
blondeguys.com
*.blondeguys.com
*.board.blondeguys.com
*.by.blondeguys.com
*.dir.blondeguys.com
*.events.blondeguys.com
*.feedback.blondeguys.com
*.gallery.blondeguys.com
*.gd.blondeguys.com
*.learn.blondeguys.com
*.sc.blondeguys.com
*.sports.blondeguys.com
*.survey.blondeguys.com
*.travel.blondeguys.com
*.users.blondeguys.com
*.v2.blondeguys.com
*.berta.iugga.com
*.fo.iugga.com
*.icossl.iugga.com
iugga.com
*.iugga.com
*.random.iugga.com
*.tr.iugga.com
*.ww25.iugga.com
*.bbs.miedler.com
*.by.miedler.com
*.dom.miedler.com
*.free.miedler.com
*.help.miedler.com
miedler.com
*.miedler.com
*.random.miedler.com
*.sms.miedler.com
*.ssl.miedler.com
*.ww17.miedler.com
*.ww25.miedler.com
mycapitallonecard.com
*.mycapitallonecard.com
*.ww25.mycapitallonecard.com
*.1.nacnatural.com
nacnatural.com
*.nacnatural.com
*.random.nacnatural.com
*.users.nacnatural.com
*.webmail.nacnatural.com
*.legacy-docs.polymsrket.com
polymsrket.com
*.polymsrket.com
Other domains in certificate