Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ascensiontop.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3D:25:1C:FD:A4:F2:4D:D6:F5:D7:DC:B8:D2:4D:69:C4:D0:E9:48:E7:4D:31:C3:5E:5C:3E:AB:05:D1:AF:C7:E3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ascode.co
*.ascode.co
ascensiontop.com
*.ascensiontop.com
asdandaroniiooealhere.shop
*.asdandaroniiooealhere.shop
asdniooealow.cyou
*.asdniooealow.cyou
asdniopealrelab.cyou
*.asdniopealrelab.cyou
askyourpharmacist.org
*.askyourpharmacist.org
asphalt-paving-job-mx-grey-157.click
*.asphalt-paving-job-mx-grey-157.click
aspiregrowth.site
*.aspiregrowth.site
at8ntn69j.buzz
*.at8ntn69j.buzz
audi.college
*.audi.college
auto-fresh.com
*.auto-fresh.com
autografgoldroom.com
*.autografgoldroom.com
b2008b.cyou
*.b2008b.cyou
barcodescanner.it
*.barcodescanner.it
bardrop.it
*.bardrop.it
betpawa.vip
*.betpawa.vip
bets365.org
*.bets365.org
betwayfeeltheaction.com
*.betwayfeeltheaction.com
bgvfwlq.cyou
*.bgvfwlq.cyou
blissfulweddingsvenue.beauty
*.blissfulweddingsvenue.beauty
blushingdivas.com
*.blushingdivas.com
bonusbloom.my
*.bonusbloom.my
bravosdomaquis.com
*.bravosdomaquis.com
brookhavengaragedoors.com
*.brookhavengaragedoors.com
brookinstitute.com
*.brookinstitute.com
brwin.live
*.brwin.live
buildrevx.com
*.buildrevx.com
buildsix.com
*.buildsix.com
c18bet.xyz
*.c18bet.xyz
calltracker.in
*.calltracker.in
carplus.us
*.carplus.us
casinobonusfinder.org
*.casinobonusfinder.org
cauliflower-287550397.click
*.cauliflower-287550397.click
cikdyp.pro
*.cikdyp.pro
cineexcel.com
*.cineexcel.com
civilization.quest
*.civilization.quest
cnameweb123.vip
*.cnameweb123.vip
coat4466.vip
*.coat4466.vip
concrete-repair-ca04-dk.buzz
*.concrete-repair-ca04-dk.buzz
coolbag.us
*.coolbag.us
corporateevent949331.icu
*.corporateevent949331.icu
cromwellhos.online
*.cromwellhos.online
crossings.co
*.crossings.co
cryptolove.net
*.cryptolove.net
csq82.top
*.csq82.top
Other domains in certificate