Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=00006.academy
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 09, 2026
Valid Until
June 07, 2026
32 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F6:37:B8:2A:B8:0C:CF:FF:AA:FB:79:B9:76:E3:5B:D4:E8:DF:9D:5B:A0:4F:83:A1:31:A6:46:27:53:89:83:FE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
get-hed.com
*.get-hed.com
00006.academy
*.00006.academy
01720.shop
*.01720.shop
16985.me
*.16985.me
202050.cc
*.202050.cc
48920.me
*.48920.me
5uu77.cc
*.5uu77.cc
97366.me
*.97366.me
9pzv77.shop
*.9pzv77.shop
aadinspections.com
*.aadinspections.com
aestheticsclothing.com
*.aestheticsclothing.com
asiafitnessmodelsearch.com
*.asiafitnessmodelsearch.com
asqeh.town
*.asqeh.town
asybo.town
*.asybo.town
bpmlabs.net
*.bpmlabs.net
c26u.icu
*.c26u.icu
clboatworks.com
*.clboatworks.com
dealsgadget.com
*.dealsgadget.com
exerciseinstructors.org.uk
*.exerciseinstructors.org.uk
fitjob.org.uk
*.fitjob.org.uk
fitnessmodells.com
*.fitnessmodells.com
jddfd.co
*.jddfd.co
jinqf.gdn
*.jinqf.gdn
p89f.icu
*.p89f.icu
physiquemagazine.com
*.physiquemagazine.com
physiquemodel.uk
*.physiquemodel.uk
prahran.co
*.prahran.co
professionalexercisegroup.co.uk
*.professionalexercisegroup.co.uk
remoteemployment.com
*.remoteemployment.com
rolmfg.com
*.rolmfg.com
shc56.icu
*.shc56.icu
shirtig.com
*.shirtig.com
sponsorbmx.com
*.sponsorbmx.com
sponsoringathlete.com
*.sponsoringathlete.com
sslservercert.com
*.sslservercert.com
sut88mega.live
*.sut88mega.live
sut88pro.xyz
*.sut88pro.xyz
t33d.icu
*.t33d.icu
talentagency.co
*.talentagency.co
uak55.icu
*.uak55.icu
waxhealth.com
*.waxhealth.com
wellnessprofessionals.org.uk
*.wellnessprofessionals.org.uk
xyx.homes
*.xyx.homes
ypsnd.org
*.ypsnd.org
zdhame.cc
*.zdhame.cc
Other domains in certificate