Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=blueforceenergy.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 03, 2026
Valid Until
September 01, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
60:CB:EA:CC:D4:0A:97:83:49:7D:E6:11:25:0F:9D:5E:90:CA:52:7E:D1:77:F0:5F:46:11:3C:82:CE:BD:D4:43
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
binoo.cn
*.binoo.cn
107393.me
*.107393.me
*.apps.107393.me
*.assets.107393.me
*.demo.107393.me
*.exchange.107393.me
*.hostmaster.107393.me
*.static.107393.me
*.test.107393.me
269387.club
*.269387.club
478120.co
*.478120.co
aderui.info
*.aderui.info
ayuslot-win.xyz
*.ayuslot-win.xyz
blueforceenergy.com
*.blueforceenergy.com
br-inscricoes-edu.pro
*.br-inscricoes-edu.pro
checkmydrinkingwater.com
*.checkmydrinkingwater.com
dtenant.com
*.dtenant.com
esportcoachpro.com
*.esportcoachpro.com
expertisegossip.live
*.expertisegossip.live
fenmoney.com
*.fenmoney.com
filmowo.eu
*.filmowo.eu
fqtko.com
*.fqtko.com
freakout.me
*.freakout.me
idbok.com
*.idbok.com
*.20250508.longfeng246.top
*.20250510.longfeng246.top
*.20251028.longfeng246.top
*.20260401.longfeng246.top
longfeng246.top
*.longfeng246.top
*.client.myasiantv.co
*.drama-cool.myasiantv.co
*.dramalike.myasiantv.co
*.kiss-asian.myasiantv.co
*.koreandramas.myasiantv.co
*.login.myasiantv.co
*.mail.myasiantv.co
myasiantv.co
*.myasiantv.co
*.quickdrama.myasiantv.co
*.ww12.myasiantv.co
*.ww38.myasiantv.co
*.www.myasiantv.co
*.www1.myasiantv.co
nodify.studio
*.nodify.studio
*.netww38.otoauto.net
otoauto.net
*.otoauto.net
*.smtp.otoauto.net
*.app.portalenemgov.online
portalenemgov.online
*.portalenemgov.online
sagorwifi.net
*.sagorwifi.net
*.cpcalendars.situsslotonline.live
situsslotonline.live
*.situsslotonline.live
*.www.situsslotonline.live
*.free-mobile.smsix.net
*.freesms.smsix.net
smsix.net
*.smsix.net
tobinmcmurdie.me
*.tobinmcmurdie.me
valoraapp.co
*.valoraapp.co
*.ww25.valoraapp.co
*.3dnshx.wholesalewindowtreatments.com
*.m.wholesalewindowtreatments.com
wholesalewindowtreatments.com
*.wholesalewindowtreatments.com
Other domains in certificate