Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=syner.sbs
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 08, 2026
Valid Until
August 06, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B1:F6:C7:23:5F:3E:78:D4:50:FD:F5:E4:9B:CC:A9:8E:52:26:81:A8:4C:F9:BE:64:B1:B7:AE:06:24:71:88:FF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ashmon.fr
*.ashmon.fr
blacktowhite.bet
*.blacktowhite.bet
*.hostmaster.blacktowhite.bet
codecanyon.site
*.codecanyon.site
*.com.codecanyon.site
*.guarderia.codecanyon.site
*.in.codecanyon.site
*.prueba.codecanyon.site
*.qa.codecanyon.site
*.testting.codecanyon.site
*.wbmaecpcalendars.codecanyon.site
*.ww25.codecanyon.site
electrodif.com
*.electrodif.com
*.www.electrodif.com
entities.live
*.entities.live
*.comune.forkliftpricing.com
forkliftpricing.com
*.forkliftpricing.com
glaignatsensah.xyz
*.glaignatsensah.xyz
*.akatelkom-akatek-bogor.kampus-indonesia.com
*.akbid-cirebon.kampus-indonesia.com
*.ama-dharmala.kampus-indonesia.com
*.amik.kampus-indonesia.com
*.amikveteran.kampus-indonesia.com
*.infonilai-akatelkomakatek.kampus-indonesia.com
*.infonilai-amik.kampus-indonesia.com
*.infonilai-stmik.kampus-indonesia.com
*.infonilai-stpjabar.kampus-indonesia.com
*.jurnal.kampus-indonesia.com
kampus-indonesia.com
*.kampus-indonesia.com
*.lkp.kampus-indonesia.com
*.pmb-akatelkom-akatek.kampus-indonesia.com
*.pmb-amik.kampus-indonesia.com
*.pmb-sties.kampus-indonesia.com
*.pmb-stmik.kampus-indonesia.com
*.pmb-stpjabar.kampus-indonesia.com
*.poltama.kampus-indonesia.com
*.pratama.kampus-indonesia.com
*.sties.kampus-indonesia.com
*.stmik.kampus-indonesia.com
*.stpjabar.kampus-indonesia.com
konayil.com
*.konayil.com
matchly.work
*.matchly.work
*.pay.matchly.work
nirvasula.click
*.nirvasula.click
now-free-watch.com
*.now-free-watch.com
*.www.now-free-watch.com
*.app.perfectirls.net
*.backend.perfectirls.net
*.cpanel.perfectirls.net
*.fr.perfectirls.net
perfectirls.net
*.perfectirls.net
*.remote.perfectirls.net
*.smtp.perfectirls.net
*.ww1.perfectirls.net
*.ww3.perfectirls.net
*.ww5.perfectirls.net
*.ww6.perfectirls.net
*.m.pgsoft.ltd
pgsoft.ltd
*.pgsoft.ltd
*.vpn2.pgsoft.ltd
*.cpanel.rafshanjani.me
*.cpcalendars.rafshanjani.me
*.cpcontacts.rafshanjani.me
*.dc-b306b3d9926c.rafshanjani.me
*.mail.rafshanjani.me
rafshanjani.me
*.rafshanjani.me
*.webdisk.rafshanjani.me
*.webmail.rafshanjani.me
*.www.rafshanjani.me
syner.sbs
*.syner.sbs
tokendigits.cc
*.tokendigits.cc
transit-de-colis.info
*.transit-de-colis.info
Other domains in certificate