Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hjc76d.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 02, 2026
Valid Until
July 31, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E8:78:BE:9D:50:EC:7A:48:F9:52:AC:5D:CF:EA:A1:61:2F:1B:75:85:28:8D:5D:CC:15:A8:91:F5:B4:C7:13:8E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
bloxfruitsscript.net
*.bloxfruitsscript.net
aureumconsultantllc.com
*.aureumconsultantllc.com
barbarusotomotiv.com
*.barbarusotomotiv.com
barchetta.com.au
*.barchetta.com.au
christiandomesticdiscipline.net
*.christiandomesticdiscipline.net
christmasmagicandmarkets.co.uk
*.christmasmagicandmarkets.co.uk
*.ww25.christmasmagicandmarkets.co.uk
*.bbs.clicklink1.pro
*.beta.clicklink1.pro
clicklink1.pro
*.clicklink1.pro
*.d.clicklink1.pro
*.go.clicklink1.pro
*.mx.clicklink1.pro
*.wp.clicklink1.pro
consulateofethiopia.com
*.consulateofethiopia.com
coolaks.com
*.coolaks.com
cvbnmc.com
*.cvbnmc.com
deafeningrange.sbs
*.deafeningrange.sbs
fdp.com.au
*.fdp.com.au
goberjaya9.click
*.goberjaya9.click
*.mail.goberjaya9.click
hjc76d.top
*.hjc76d.top
jjexploit.net
*.jjexploit.net
kingbetng.com
*.kingbetng.com
kiyahcrittendon.com
*.kiyahcrittendon.com
kreomfoq.com
*.kreomfoq.com
ktf-ririka.net
*.ktf-ririka.net
lincolnsquaremontessori.com
*.lincolnsquaremontessori.com
*.pink.lincolnsquaremontessori.com
ljmining.com
*.ljmining.com
mashafund.org
*.mashafund.org
minxmusic.co.uk
*.minxmusic.co.uk
nationalliquor.com
*.nationalliquor.com
ngbetking.com
*.ngbetking.com
*.gfg.nuy.au
nuy.au
*.nuy.au
pampers.au
*.pampers.au
pmc-online.com
*.pmc-online.com
prajna-osaka.com
*.prajna-osaka.com
*.gov.raigarh.in
*.govt.raigarh.in
*.kvs.raigarh.in
raigarh.in
*.raigarh.in
*.random.raigarh.in
*.sanskarschoo.raigarh.in
resultatsdupeuple.com
*.resultatsdupeuple.com
shuiyun8888.com
*.shuiyun8888.com
travelvaccinations.com.au
*.travelvaccinations.com.au
virtuallifephoto.com
*.virtuallifephoto.com
vocesdelamemoria.org
*.vocesdelamemoria.org
webtoolpartner.com
*.webtoolpartner.com
wi511.com
*.wi511.com
Other domains in certificate