Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bizampsleads.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 20, 2026
Valid Until
July 19, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
35:5D:56:38:98:6D:74:64:03:8D:EE:11:A1:DB:A8:99:B5:48:6C:85:B0:D3:AB:2E:77:18:CF:24:5E:08:41:30
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
bcud.net
*.bcud.net
*.ww25.bcud.net
91av789.com
*.91av789.com
*.com.91av789.com
*.me.91av789.com
amazonfreegifts.com
*.amazonfreegifts.com
*.api.amazonfreegifts.com
*.ww25.amazonfreegifts.com
*.ww38.amazonfreegifts.com
*.a.bizampsleads.com
bizampsleads.com
*.bizampsleads.com
blender-zygosphene.com
*.blender-zygosphene.com
capitalcountry.com.au
*.capitalcountry.com.au
cj.im
*.cj.im
*.saa.cj.im
creditors.it
*.creditors.it
*.content.eernser.com
eernser.com
*.eernser.com
ende.studio
*.ende.studio
*.smtp.ende.studio
ffigma.info
*.ffigma.info
*.admin.fht.it
fht.it
*.fht.it
*.reporting.fht.it
*.staging.fht.it
*.superset.fht.it
*.blog.lifeinsuranceforcancerpatients.com
*.hostmaster.lifeinsuranceforcancerpatients.com
lifeinsuranceforcancerpatients.com
*.lifeinsuranceforcancerpatients.com
*.stg.lifeinsuranceforcancerpatients.com
*.vpn.lifeinsuranceforcancerpatients.com
*.www.lifeinsuranceforcancerpatients.com
*.delica.meats.com.au
meats.com.au
*.meats.com.au
*.st.meats.com.au
*.w.meats.com.au
norwichleap.co.uk
*.norwichleap.co.uk
*.www.norwichleap.co.uk
pinterestcarrers.com
*.pinterestcarrers.com
*.0e69b148-df02-49d6-b6a2-f3cf9aff6b31.playmod.biz
*.35b8c1af-f232-4c15-8673-4c624ae8b898.playmod.biz
playmod.biz
*.playmod.biz
*.pro.playmod.biz
*.cloud.privacyconnectonline.com
*.media.privacyconnectonline.com
privacyconnectonline.com
*.privacyconnectonline.com
*.rd.privacyconnectonline.com
*.rds.privacyconnectonline.com
*.rdweb.privacyconnectonline.com
*.remote.privacyconnectonline.com
*.ww25.privacyconnectonline.com
repalcements.com
*.repalcements.com
*.staging.repalcements.com
safaraliyev.me
*.safaraliyev.me
*.flashpoint.thundertix.co
*.hostmaster.thundertix.co
*.pce.thundertix.co
thundertix.co
*.thundertix.co
*.hostmaster.tingecatalogue.club
tingecatalogue.club
*.tingecatalogue.club
*.wildcard.tingecatalogue.club
*.ww25.tingecatalogue.club
*.ww6.tingecatalogue.club
xn--365-vo1n131bftam6e.com
*.xn--365-vo1n131bftam6e.com
*.a.yiyuanclash.com
yiyuanclash.com
*.yiyuanclash.com
Other domains in certificate