Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fortuneresults.de
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 18, 2026
Valid Until
August 16, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6C:97:3F:C6:B1:42:15:12:58:B1:E7:9A:58:BD:E2:05:42:6C:AF:13:94:D3:B0:04:00:F9:F7:E2:5F:B7:53:87
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
athyphenates.com
*.athyphenates.com
*.assets.athyphenates.com
*.ibank.athyphenates.com
*.pop.athyphenates.com
*.www.athyphenates.com
12597.my
*.12597.my
*.www.12597.my
*.asp.bonbonbuddies.com
bonbonbuddies.com
*.bonbonbuddies.com
*.buddymail.bonbonbuddies.com
*.buddymail2.bonbonbuddies.com
*.en.bonbonbuddies.com
*.esg.bonbonbuddies.com
*.hereweb.bonbonbuddies.com
*.mail.bonbonbuddies.com
*.newsapp.bonbonbuddies.com
*.ofertas-trabajo.bonbonbuddies.com
*.osl.bonbonbuddies.com
*.plsstg.bonbonbuddies.com
*.potaufeu.bonbonbuddies.com
*.professional.bonbonbuddies.com
*.site.bonbonbuddies.com
*.store.bonbonbuddies.com
*.v2.bonbonbuddies.com
*.v5stg.bonbonbuddies.com
*.www.bonbonbuddies.com
*.4nmnw3.casinobison-pl.org
casinobison-pl.org
*.casinobison-pl.org
centroacustico.com
*.centroacustico.com
dexter.vip
*.dexter.vip
*.mail.dexter.vip
*.mx.dexter.vip
*.rdweb.dexter.vip
*.www.dexter.vip
dineardeo.com
*.dineardeo.com
*.www.dineardeo.com
expressdiplomaticcourierservice.com
*.expressdiplomaticcourierservice.com
*.hostmaster.expressdiplomaticcourierservice.com
*.www.expressdiplomaticcourierservice.com
fdpfinefoods.co.uk
*.fdpfinefoods.co.uk
*.kjzx.fdpfinefoods.co.uk
fortuneresults.de
*.fortuneresults.de
*.hostmaster.mobifilm.website
mobifilm.website
*.mobifilm.website
*.play.mobifilm.website
*.ww16.mobifilm.website
*.ww25.mobifilm.website
*.hostmaster.monsters.it
monsters.it
*.monsters.it
*.app.polypayx.net
polypayx.net
*.polypayx.net
*.www.polypayx.net
popmel.info
*.popmel.info
pzcpeyw1188.vip
*.pzcpeyw1188.vip
qwe889.com
*.qwe889.com
*.a.rtpducatislot.info
*.admin.rtpducatislot.info
*.bxpwjdev.rtpducatislot.info
*.dev.rtpducatislot.info
*.j9zd08.rtpducatislot.info
*.new.rtpducatislot.info
*.ngufqa.rtpducatislot.info
rtpducatislot.info
*.rtpducatislot.info
*.cpanel.ttgamerepack.com
ttgamerepack.com
*.ttgamerepack.com
*.webmail.ttgamerepack.com
*.ww25.ttgamerepack.com
*.ww38.ttgamerepack.com
*.www.yourkeysyourbitcoin.com
yourkeysyourbitcoin.com
*.yourkeysyourbitcoin.com
Other domains in certificate