Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=newleads.com.au
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 24, 2026
Valid Until
July 23, 2026
43 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
90:D7:D8:CB:4C:DF:B2:72:2B:9F:3B:FB:7D:D7:6F:31:9A:4E:CF:5B:FA:B8:F5:87:4E:92:88:28:01:60:B1:34
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
beilul.com
*.beilul.com
*.edp.beilul.com
*.tw.beilul.com
9c9c.cc
*.9c9c.cc
*.m.9c9c.cc
*.ww38.9c9c.cc
applebys.com
*.applebys.com
*.neighfeedback.applebys.com
*.work.applebys.com
*.bbs.beautycoounter.com
beautycoounter.com
*.beautycoounter.com
*.login.beautycoounter.com
*.random.beautycoounter.com
billigglug.de
*.billigglug.de
buycheappaintings.com
*.buycheappaintings.com
*.ts2.buycheappaintings.com
dkny.com.au
*.dkny.com.au
*.random.dkny.com.au
*.comune.ebookofpianos.com
ebookofpianos.com
*.ebookofpianos.com
*.tr.ebookofpianos.com
*.ww25.ebookofpianos.com
*.ww38.ebookofpianos.com
encylopedia.com.au
*.encylopedia.com.au
epicsquirt.com
*.epicsquirt.com
*.help.epicsquirt.com
*.world.epicsquirt.com
evanston.com.au
*.evanston.com.au
*.random.evanston.com.au
*.ww25.evanston.com.au
*.ww38.evanston.com.au
*.app.forumzamparalar117.xyz
forumzamparalar117.xyz
*.forumzamparalar117.xyz
*.ww25.forumzamparalar117.xyz
*.ww38.forumzamparalar117.xyz
*.www.forumzamparalar117.xyz
irental.co
*.irental.co
*.www.irental.co
*.app.kazinosms.com
kazinosms.com
*.kazinosms.com
*.mail1.kazinosms.com
*.money.kazinosms.com
*.news.kazinosms.com
kondenstrockner.de
*.kondenstrockner.de
*.ww.kondenstrockner.de
*.bpm.mdapp3.beauty
mdapp3.beauty
*.mdapp3.beauty
*.psgzrw.mdapp3.beauty
newleads.com.au
*.newleads.com.au
*.ww25.newleads.com.au
*.ww38.newleads.com.au
sticksgolfrange.com
*.sticksgolfrange.com
*.16.uusps.com
*.fallback.uusps.com
*.managemymove.uusps.com
*.random.uusps.com
uusps.com
*.uusps.com
*.v.uusps.com
*.ww12.uusps.com
*.ww16.uusps.com
*.ww17.uusps.com
*.ww25.uusps.com
wholesaleprices.it
*.wholesaleprices.it
*.random.wipeyourscreen.com
wipeyourscreen.com
*.wipeyourscreen.com
*.ww25.wipeyourscreen.com
*.ww25.xn--ick7bf.jp
xn--ick7bf.jp
*.xn--ick7bf.jp
Other domains in certificate