Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=news-vufafo.cc
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:A0:AE:1E:B3:1D:19:29:11:C8:05:D1:2E:A9:C4:73:22:45:F9:55:0D:0D:C3:30:23:0E:11:FD:A2:56:32:7D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
baotien.com
*.baotien.com
*.antispam.baotien.com
*.ww1.baotien.com
bell.bio
*.bell.bio
*.caitlin.bell.bio
*.ciscovpn.delineados.com
delineados.com
*.delineados.com
*.m.delineados.com
*.access.exier.com
*.antispam.exier.com
exier.com
*.exier.com
*.freethepe.guins.com
guins.com
*.guins.com
*.pudgypen.guins.com
*.wiki.guins.com
meteowebcams.it
*.meteowebcams.it
metodico.it
*.metodico.it
metrocallproinvesent.top
*.metrocallproinvesent.top
mfavro.com
*.mfavro.com
mfkdo.bid
*.mfkdo.bid
mfviv.bid
*.mfviv.bid
mfyxptnv.xyz
*.mfyxptnv.xyz
mgm14.com
*.mgm14.com
mgm99spin.biz
*.mgm99spin.biz
mgnzy.net
*.mgnzy.net
mgq73.top
*.mgq73.top
mgzav.pro
*.mgzav.pro
mh-accounting.com
*.mh-accounting.com
mhgwmrc468.vip
*.mhgwmrc468.vip
mhldn.net
*.mhldn.net
mhs4yk.shop
*.mhs4yk.shop
*.9c29f6308f.news-vufafo.cc
*.ec076f01bc.news-vufafo.cc
*.f139ecd4aa.news-vufafo.cc
news-vufafo.cc
*.news-vufafo.cc
*.ssl2.staterbris.com
staterbris.com
*.staterbris.com
twacker.com
*.twacker.com
*.ww16.twacker.com
ysav629.xyz
*.ysav629.xyz
yuanda12865.com
*.yuanda12865.com
yuanda53905.com
*.yuanda53905.com
yyy333.top
*.yyy333.top
yyy527.top
*.yyy527.top
yyy733.top
*.yyy733.top
zanaseven.com
*.zanaseven.com
zcpoz.me
*.zcpoz.me
zdm.in
*.zdm.in
zenmldso.click
*.zenmldso.click
zimbio.it
*.zimbio.it
ztre5e.click
*.ztre5e.click
zuker.co
*.zuker.co
Other domains in certificate