Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=02996.blog
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 26, 2026
Valid Until
July 25, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:B7:93:7A:E5:3D:F9:24:B8:7F:82:11:F2:F3:CC:B5:D0:8C:A3:3F:66:BE:B0:9B:68:D9:18:BB:EB:08:B5:84
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
botzol.com
*.botzol.com
02996.blog
*.02996.blog
5k-8k-0lnaa.sbs
*.5k-8k-0lnaa.sbs
77655.nexus
*.77655.nexus
8h-8h-pi1zs.sbs
*.8h-8h-pi1zs.sbs
americanaq.com
*.americanaq.com
aqeuro.com
*.aqeuro.com
aqyacht.com
*.aqyacht.com
atendenovidade.xyz
*.atendenovidade.xyz
bitcoingptbot.pro
*.bitcoingptbot.pro
c67r.cyou
*.c67r.cyou
carros-usados-con-cuotas-sin-recargo.sbs
*.carros-usados-con-cuotas-sin-recargo.sbs
celulares-sin-entrada-lookup-pt.sbs
*.celulares-sin-entrada-lookup-pt.sbs
chempion-slots.shop
*.chempion-slots.shop
cleverbeer.com
*.cleverbeer.com
clinicaltrials3-us.sbs
*.clinicaltrials3-us.sbs
coding.capital
*.coding.capital
confidencecruises.live
*.confidencecruises.live
confidentjourney.xyz
*.confidentjourney.xyz
cornerstoneskillexchange.com
*.cornerstoneskillexchange.com
cyberhorizonlogic.xyz
*.cyberhorizonlogic.xyz
d8vfl3.cyou
*.d8vfl3.cyou
datamodeling.xyz
*.datamodeling.xyz
deltafinancialsolutions.com
*.deltafinancialsolutions.com
devworks.co
*.devworks.co
digitalcortexanalytics.company
*.digitalcortexanalytics.company
directdeposit.in
*.directdeposit.in
ecommercelogistics.in
*.ecommercelogistics.in
expertprimex.com
*.expertprimex.com
foodmanifesto.food
*.foodmanifesto.food
genuinediy.xyz
*.genuinediy.xyz
getrich-8s08o3.sbs
*.getrich-8s08o3.sbs
glcdrop.com
*.glcdrop.com
glowingweddings.beauty
*.glowingweddings.beauty
goodpeoplehomes.com
*.goodpeoplehomes.com
great-highrollerroulette.quest
*.great-highrollerroulette.quest
great-pixelzen.quest
*.great-pixelzen.quest
great-vegasdealer.quest
*.great-vegasdealer.quest
great-vibealpha.quest
*.great-vibealpha.quest
great-vibenexus.quest
*.great-vibenexus.quest
great-visionpath.quest
*.great-visionpath.quest
great-windice.quest
*.great-windice.quest
greatcitycb.online
*.greatcitycb.online
helloyogurt.info
*.helloyogurt.info
hkyg-y89-ryfui99u--d657tii-ujd98ty-kllg6-56i-ut7d.sbs
*.hkyg-y89-ryfui99u--d657tii-ujd98ty-kllg6-56i-ut7d.sbs
Other domains in certificate