Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aerox.cfd
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:5F:AA:73:A6:A2:D3:01:54:25:14:FB:9E:BA:AB:39:7D:43:7F:CA:42:B9:67:BF:26:59:77:0F:B6:29:B7:20
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
atanos.com
*.atanos.com
3spirits.com
*.3spirits.com
abrazados.com
*.abrazados.com
adefuye.com
*.adefuye.com
adventuretravelwander.xyz
*.adventuretravelwander.xyz
*.adb-keyevent.aerox.cfd
aerox.cfd
*.aerox.cfd
*.derailleur-arriere-vtt-decathlon.aerox.cfd
alamadre.com
*.alamadre.com
andloan.com
*.andloan.com
arivelmkt.sbs
*.arivelmkt.sbs
balloonpants.com
*.balloonpants.com
balwant.com
*.balwant.com
barbid.com
*.barbid.com
biological.com.au
*.biological.com.au
bitmapitwebdesign.com.au
*.bitmapitwebdesign.com.au
blendergurus.tech
*.blendergurus.tech
*.ww38.blendergurus.tech
brightoncabin.com
*.brightoncabin.com
broligar.com
*.broligar.com
cantonese.com.au
*.cantonese.com.au
canyy.com
*.canyy.com
careerimpactnow.xyz
*.careerimpactnow.xyz
cfz819.cc
*.cfz819.cc
chaudes.com
*.chaudes.com
chauffeurlimo.com
*.chauffeurlimo.com
cheryll.com
*.cheryll.com
corrections.com.au
*.corrections.com.au
courtesy.com.au
*.courtesy.com.au
cyst.com.au
*.cyst.com.au
demonology.com.au
*.demonology.com.au
departures.com.au
*.departures.com.au
dissection.com.au
*.dissection.com.au
inpeko.sk
*.inpeko.sk
legalmetrics.com.au
*.legalmetrics.com.au
*.ww25.legalmetrics.com.au
licensedplumber.com.au
*.licensedplumber.com.au
mount.com.au
*.mount.com.au
piping.com.au
*.piping.com.au
rayongrealestate.com
*.rayongrealestate.com
*.ww1.rayongrealestate.com
*.nywse.smplctlab.org
smplctlab.org
*.smplctlab.org
*.winningwomencollection.smplctlab.org
*.app.svyato.com
*.customers.svyato.com
*.obuv.svyato.com
svyato.com
*.svyato.com
taimapedia.org
*.taimapedia.org
womandesign.com
*.womandesign.com
Other domains in certificate