Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=outoftheboxplot.tech
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 07, 2026
Valid Until
July 06, 2026
54 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E5:CA:94:CC:E1:0A:40:D1:27:C3:E3:A2:13:B0:7B:11:51:35:20:5B:46:5F:37:82:69:E3:8B:F7:CD:BD:2A:39
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
s3block.com
*.s3block.com
06749.xyz
*.06749.xyz
26435235.vip
*.26435235.vip
26488016.vip
*.26488016.vip
52383.ca
*.52383.ca
ghklozhjev.sbs
*.ghklozhjev.sbs
h91cx4.shop
*.h91cx4.shop
*.admin.hdtvexperts.com
*.ae7f39e2-42e4-4033-bf0a-7f3652a347d2.hdtvexperts.com
*.auth.hdtvexperts.com
*.backup.hdtvexperts.com
*.beta.hdtvexperts.com
*.cabinet.hdtvexperts.com
*.dev.hdtvexperts.com
hdtvexperts.com
*.hdtvexperts.com
*.intranet.hdtvexperts.com
*.link.hdtvexperts.com
*.mail.hdtvexperts.com
*.marketing.hdtvexperts.com
*.new.hdtvexperts.com
*.news.hdtvexperts.com
*.obhiuenajiintranet.hdtvexperts.com
*.remote.hdtvexperts.com
*.shop.hdtvexperts.com
*.uat.hdtvexperts.com
*.win.hdtvexperts.com
*.46fbb853-d0df-4c62-95e0-c380f20e8ab9.neanderthalnyc.com
*.api.neanderthalnyc.com
*.assets.neanderthalnyc.com
*.c33d6e0f-47b8-4ce9-8045-d4158390b7c0.neanderthalnyc.com
*.cloud.neanderthalnyc.com
*.dev.neanderthalnyc.com
*.hostmaster.neanderthalnyc.com
*.mail.neanderthalnyc.com
*.mailer.neanderthalnyc.com
*.marketing.neanderthalnyc.com
neanderthalnyc.com
*.neanderthalnyc.com
*.qa.neanderthalnyc.com
*.rd.neanderthalnyc.com
*.rdweb.neanderthalnyc.com
*.remote.neanderthalnyc.com
*.secure.neanderthalnyc.com
*.staging.neanderthalnyc.com
*.stg.neanderthalnyc.com
*.uat.neanderthalnyc.com
*.v1.neanderthalnyc.com
*.v2.neanderthalnyc.com
*.vpn.neanderthalnyc.com
*.web.neanderthalnyc.com
*.www.neanderthalnyc.com
*.xsmndmailer.neanderthalnyc.com
opencskycs.org
*.opencskycs.org
*.ww25.opencskycs.org
*.ww38.opencskycs.org
*.9653317a-c753-42e4-8364-12d0bacb5b90.outoftheboxplot.tech
*.app.outoftheboxplot.tech
*.bot.outoftheboxplot.tech
*.dev.outoftheboxplot.tech
*.mail.outoftheboxplot.tech
outoftheboxplot.tech
*.outoftheboxplot.tech
*.test.outoftheboxplot.tech
practicallywealthy.com
*.practicallywealthy.com
*.paypal.profile-update.info
profile-update.info
*.profile-update.info
thehshq.com
*.thehshq.com
urduplay.com
*.urduplay.com
vietbet.vin
*.vietbet.vin
wooddrinkcoasters.com
*.wooddrinkcoasters.com
xn--bzburadayik-zzb.shop
*.xn--bzburadayik-zzb.shop
xo227.com
*.xo227.com
Other domains in certificate