Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ffmovies.bz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
08:3C:18:60:4A:EC:A6:3D:85:77:86:A4:10:D5:EE:78:A4:64:7E:4A:A2:76:3D:3F:94:DE:F7:2F:5F:2C:7C:DC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
avei.me
*.avei.me
1bwm.com
*.1bwm.com
71585.locker
*.71585.locker
77luckypg.com
*.77luckypg.com
789wingb.com
*.789wingb.com
79237.mobi
*.79237.mobi
80805.top
*.80805.top
80863.mobi
*.80863.mobi
81535.mobi
*.81535.mobi
82466g.co
*.82466g.co
87115.mobi
*.87115.mobi
949.com.au
*.949.com.au
acceleratenexusapp.biz
*.acceleratenexusapp.biz
acceleratenexussolutions.company
*.acceleratenexussolutions.company
anntuk.com
*.anntuk.com
aviation-training-8j5o1c9d7d9.sbs
*.aviation-training-8j5o1c9d7d9.sbs
babaji.xyz
*.babaji.xyz
bestquickmentaltest.sbs
*.bestquickmentaltest.sbs
biotech.gg
*.biotech.gg
blitzsaga.com
*.blitzsaga.com
bloome-skincare.com
*.bloome-skincare.com
blpvfbfzp.cc
*.blpvfbfzp.cc
blurrent.com
*.blurrent.com
brett.cfd
*.brett.cfd
brightclicksaga.com
*.brightclicksaga.com
brilthoria.com
*.brilthoria.com
browse.gg
*.browse.gg
bw6177.app
*.bw6177.app
bw6199.app
*.bw6199.app
bw8552.com
*.bw8552.com
by29666.com
*.by29666.com
c67g.cyou
*.c67g.cyou
capcomhighlights.com
*.capcomhighlights.com
careerbuildr.info
*.careerbuildr.info
cgsrvr.com
*.cgsrvr.com
cindy.cfd
*.cindy.cfd
claritypathway.info
*.claritypathway.info
coelhoshow.com
*.coelhoshow.com
cosmorider29.top
*.cosmorider29.top
cottagesat220.com
*.cottagesat220.com
ffmovies.bz
*.ffmovies.bz
inclusive.cfd
*.inclusive.cfd
indyhomesreborn-team.com
*.indyhomesreborn-team.com
safaran.co
*.safaran.co
sitepercieve.com
*.sitepercieve.com
Other domains in certificate