Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=abbic.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
63:0A:FF:86:3B:B1:B4:56:E6:B0:25:DE:DC:14:17:F7:80:20:BF:71:2D:EB:63:35:87:98:D7:68:F4:8D:2C:3F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
agentstate.org
*.agentstate.org
abbic.com
*.abbic.com
abjtm.bid
*.abjtm.bid
acetoxime.com
*.acetoxime.com
adaikr.com
*.adaikr.com
adepter-team.com
*.adepter-team.com
ads-pos.com
*.ads-pos.com
adswrktz.top
*.adswrktz.top
adulterous-lawyer-800124492.click
*.adulterous-lawyer-800124492.click
ageeb.org
*.ageeb.org
agomphious.com
*.agomphious.com
ahvudl.pro
*.ahvudl.pro
aiagent.house
*.aiagent.house
aiagentoperate.com
*.aiagentoperate.com
aimediary.com
*.aimediary.com
aiquao.buzz
*.aiquao.buzz
air-conditioning-jobs-au2-dp.click
*.air-conditioning-jobs-au2-dp.click
aistreet.us
*.aistreet.us
alias.best
*.alias.best
alisveriskampanya.com
*.alisveriskampanya.com
allincontentstore.com
*.allincontentstore.com
allomarkets.com
*.allomarkets.com
allroundfantasyin.com
*.allroundfantasyin.com
alltalkfinancial.com
*.alltalkfinancial.com
alluringweddingsstyle.beauty
*.alluringweddingsstyle.beauty
allyao.com
*.allyao.com
alnasem.com
*.alnasem.com
alo29.com
*.alo29.com
alovegame.com
*.alovegame.com
*.584627.am8800.com
am8800.com
*.am8800.com
amaira.in
*.amaira.in
amdl.org
*.amdl.org
ameeraloudh.com
*.ameeraloudh.com
amity.it
*.amity.it
anaboliclaboratories.com
*.anaboliclaboratories.com
anguinidae.com
*.anguinidae.com
anlian236.com
*.anlian236.com
annp.org
*.annp.org
anolyelifestyle.com
*.anolyelifestyle.com
aou.me
*.aou.me
appareltrendychoice.cfd
*.appareltrendychoice.cfd
aqdav.one
*.aqdav.one
artificialintelligence.boston
*.artificialintelligence.boston
*.auth.lightning.creditcard
lightning.creditcard
*.lightning.creditcard
Other domains in certificate