Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=devbitbot.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 13, 2026
Valid Until
August 11, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
24:EF:7A:BB:DE:4A:64:C9:00:98:AA:3F:BE:1B:9D:FF:13:E7:E2:61:A6:B4:EB:2D:63:B7:89:A3:20:5D:1F:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
blockswap.live
*.blockswap.live
*.app.blockswap.live
*.webmail.blockswap.live
a0a.shop
*.a0a.shop
*.d806666797eb.a0a.shop
*.fay.a0a.shop
*.itskaslol.a0a.shop
*.lovepollito17.a0a.shop
*.sinfuldeeds.a0a.shop
*.summerxiris.a0a.shop
accommodationtaree.com.au
*.accommodationtaree.com.au
alzfd.org
*.alzfd.org
*.25.animalfun.club
*.6441056b613c32a9.animalfun.club
*.analytic.animalfun.club
animalfun.club
*.animalfun.club
*.beta.animalfun.club
*.dashboard.animalfun.club
*.data-integration.animalfun.club
*.emv1.animalfun.club
*.hostmaster.animalfun.club
*.insight-staging.animalfun.club
*.m.animalfun.club
*.mail.animalfun.club
*.preview-dashboard.animalfun.club
*.qa-bi.animalfun.club
*.sitemap.animalfun.club
*.ww25.animalfun.club
axacolpatrtia.co
*.axacolpatrtia.co
*.app.ceylonfinest.fund
ceylonfinest.fund
*.ceylonfinest.fund
*.test.ceylonfinest.fund
*.5f2b64e9-3648-4289-b6aa-fd1311c019b6.devbitbot.com
*.app.devbitbot.com
*.demo.devbitbot.com
devbitbot.com
*.devbitbot.com
*.bbs.eroticdancers.com
eroticdancers.com
*.eroticdancers.com
*.www.eroticdancers.com
*.app.mountainbikeusate.com
mountainbikeusate.com
*.mountainbikeusate.com
*.superset.mountainbikeusate.com
myteavelers.com
*.myteavelers.com
oznetlaw.net
*.oznetlaw.net
*.www.oznetlaw.net
*.inside.power-bet.vip
power-bet.vip
*.power-bet.vip
*.www.power-bet.vip
*.0t9lqa.programamplifyycrown.info
programamplifyycrown.info
*.programamplifyycrown.info
*.hostmaster.safesurfdns.com
safesurfdns.com
*.safesurfdns.com
*.www.safesurfdns.com
*.beta.sihteriopisto.fi
*.corp.sihteriopisto.fi
*.portal.sihteriopisto.fi
sihteriopisto.fi
*.sihteriopisto.fi
*.public.studyroom.in
*.schools.studyroom.in
*.sr.studyroom.in
*.srec.studyroom.in
studyroom.in
*.studyroom.in
*.api.trendmagnetischzentral.com
*.app.trendmagnetischzentral.com
*.beta.trendmagnetischzentral.com
*.dashboard.trendmagnetischzentral.com
*.mail.trendmagnetischzentral.com
*.mta-sts.trendmagnetischzentral.com
*.sitemaps.trendmagnetischzentral.com
trendmagnetischzentral.com
*.trendmagnetischzentral.com
*.ww12.trendmagnetischzentral.com
*.ww99.trendmagnetischzentral.com
Other domains in certificate