Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=001520.me
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 27, 2026
Valid Until
August 25, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:45:7D:C3:21:3E:ED:4F:69:5E:8B:28:FC:88:7F:85:69:B8:CD:A7:B7:7A:78:CE:10:81:D5:14:10:46:B0:C2
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
promfix.com
*.promfix.com
001520.me
*.001520.me
00488.my
*.00488.my
00640.one
*.00640.one
01352.blog
*.01352.blog
01583.my
*.01583.my
01661.my
*.01661.my
016730.me
*.016730.me
01755.my
*.01755.my
019533.cn
*.019533.cn
04040.agency
*.04040.agency
05574.my
*.05574.my
05594.one
*.05594.one
063253.co
*.063253.co
22254.agency
*.22254.agency
90460.one
*.90460.one
9jejgn.cc
*.9jejgn.cc
accessofrances.click
*.accessofrances.click
an99.luxury
*.an99.luxury
b22b.cyou
*.b22b.cyou
b22v.cyou
*.b22v.cyou
b27k.cyou
*.b27k.cyou
b52h.cyou
*.b52h.cyou
btkri.cn
*.btkri.cn
btpat.cc
*.btpat.cc
btsne.my
*.btsne.my
c28u.cyou
*.c28u.cyou
c29v.cyou
*.c29v.cyou
casinoplatforms.top
*.casinoplatforms.top
champion-g33.top
*.champion-g33.top
dlfby.cn
*.dlfby.cn
dltechtrends.com
*.dltechtrends.com
gossipconvoy.live
*.gossipconvoy.live
lunexa.cfd
*.lunexa.cfd
lungc.my
*.lungc.my
mabbdye176.vip
*.mabbdye176.vip
mabok88ah.com
*.mabok88ah.com
mabok88aj.com
*.mabok88aj.com
meritking1627.click
*.meritking1627.click
realmpaladin907.info
*.realmpaladin907.info
robots.bet
*.robots.bet
robovaultch.com
*.robovaultch.com
w13726586.com
*.w13726586.com
xn--gckg6eh.com
*.xn--gckg6eh.com
ywpjzj.cc
*.ywpjzj.cc
Other domains in certificate