Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=youcopy.com
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 04, 2026
Valid Until
September 02, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:44:4A:AF:26:84:F1:7D:DB:62:A3:9D:31:4E:93:A1:3F:8D:5A:5C:A5:3D:A4:A8:90:9B:2A:0A:2D:B5:66:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
blockuru.com
*.blockuru.com
*.admin.blockuru.com
*.api.blockuru.com
*.app.blockuru.com
*.assets.blockuru.com
*.backup.blockuru.com
*.demo.blockuru.com
*.dev.blockuru.com
*.new.blockuru.com
*.remote.blockuru.com
*.tbomcapi.blockuru.com
*.test.blockuru.com
*.uat.blockuru.com
*.vpn.blockuru.com
*.www.blockuru.com
barkeeper.io
*.barkeeper.io
*.ch.barkeeper.io
*.shop.barkeeper.io
celebrationsrentals.com
*.celebrationsrentals.com
*.e2mfuq.celebrationsrentals.com
ezbag.one
*.ezbag.one
*.uat.ezbag.one
*.v2.ezbag.one
*.7c292241-b06c-4fb3-8985-93e0bfae830b.fapcircle.com
*.ad9fa0ff-a39e-4dc4-862d-8607a3b7b1ec.fapcircle.com
*.api.fapcircle.com
*.app.fapcircle.com
*.assets.fapcircle.com
*.betting.fapcircle.com
*.dev.fapcircle.com
*.dns.fapcircle.com
*.dns1.fapcircle.com
*.doh.fapcircle.com
*.doh1.fapcircle.com
fapcircle.com
*.fapcircle.com
*.intranet.fapcircle.com
*.live.fapcircle.com
*.m.fapcircle.com
*.metric.fapcircle.com
*.owa.fapcircle.com
*.phpmyadmin.fapcircle.com
*.prsvkagh.fapcircle.com
*.remote.fapcircle.com
*.resolver1.fapcircle.com
*.staging.fapcircle.com
*.test.fapcircle.com
*.uat.fapcircle.com
*.wildcard.fapcircle.com
*.workepi.fapcircle.com
*.www.fapcircle.com
*.assets.gospelmusicflix.com
*.demo.gospelmusicflix.com
*.dev.gospelmusicflix.com
gospelmusicflix.com
*.gospelmusicflix.com
*.public.gospelmusicflix.com
*.qdraldev.gospelmusicflix.com
*.sharepoint.gospelmusicflix.com
*.udmzumy.gospelmusicflix.com
*.a.ratumastoto.info
ratumastoto.info
*.ratumastoto.info
*.xfgab3.ratumastoto.info
*.m.renaissancerenovation.com
renaissancerenovation.com
*.renaissancerenovation.com
*.83ece87e-a8c3-4487-9f33-53ce03a411ac.spartansursface.art
*.api.spartansursface.art
spartansursface.art
*.spartansursface.art
*.api.uplifterinc.org
*.com4672-8856-7170a06746ae.uplifterinc.org
*.cxuk5b.uplifterinc.org
*.dev.uplifterinc.org
*.echotheaterpdx.uplifterinc.org
*.rustore.uplifterinc.org
uplifterinc.org
*.uplifterinc.org
*.sextb.xn--espaol-zwa.net
xn--espaol-zwa.net
*.xn--espaol-zwa.net
*.com.youcopy.com
*.staging.youcopy.com
youcopy.com
*.youcopy.com
Other domains in certificate