Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=40936.blog
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 19, 2026
Valid Until
July 18, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
33:0E:40:3F:94:F8:AA:F0:32:11:1E:D3:D8:59:29:EF:0F:FA:94:A9:D5:8D:65:D3:82:F3:8D:F9:1E:9A:EE:D5
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
boviews.com
*.boviews.com
40936.blog
*.40936.blog
4421e8d977b858b22.club
*.4421e8d977b858b22.club
46880.co
*.46880.co
8222av.com
*.8222av.com
992468.co
*.992468.co
advertisewithredditdirect.com
*.advertisewithredditdirect.com
advertisewithredditonline.com
*.advertisewithredditonline.com
agitokenization.com
*.agitokenization.com
anjumeijia.cn
*.anjumeijia.cn
anker-renhold.vip
*.anker-renhold.vip
bdqzhq.forex
*.bdqzhq.forex
big-boat.com
*.big-boat.com
biowaste.us
*.biowaste.us
brusselsairlins.com
*.brusselsairlins.com
byteburn.com
*.byteburn.com
closeings.com
*.closeings.com
cookok.com
*.cookok.com
creditsafety.net
*.creditsafety.net
d99p.com
*.d99p.com
dzdhjy.top
*.dzdhjy.top
edificiook.com
*.edificiook.com
ejqgdw.top
*.ejqgdw.top
email-service.tokyo
*.email-service.tokyo
epmbgy.top
*.epmbgy.top
eyshila.com
*.eyshila.com
gmfmhe.top
*.gmfmhe.top
gmobii.my
*.gmobii.my
grouphealthmax.com
*.grouphealthmax.com
grouphealthpurehealth.com
*.grouphealthpurehealth.com
gummole.site
*.gummole.site
gutter-service-64591.click
*.gutter-service-64591.click
halongbayexplorers.com
*.halongbayexplorers.com
halongpackages.com
*.halongpackages.com
hellogetevolvedcommerceee.com
*.hellogetevolvedcommerceee.com
hmepcb.top
*.hmepcb.top
homeshop18.shop
*.homeshop18.shop
pickfirst.net
*.pickfirst.net
simplehomeopathy.com
*.simplehomeopathy.com
xn--j2bpn3di.com
*.xn--j2bpn3di.com
youngdesi.com
*.youngdesi.com
yum38.icu
*.yum38.icu
zenerlabs.com
*.zenerlabs.com
zrgzob.xyz
*.zrgzob.xyz
zzzttt25.cn
*.zzzttt25.cn
Other domains in certificate