Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=zyy89.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 05, 2026
Valid Until
May 06, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2B:08:03:23:3C:EB:3A:44:AB:FE:D6:65:B7:C3:63:B2:3D:6B:E9:89:BA:1D:38:46:F0:0A:1B:FD:2B:19:87:4C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
breakin.it
*.breakin.it
bonus-livelo.com
*.bonus-livelo.com
boredloft.com
*.boredloft.com
bostonvolleyballfestival.com
*.bostonvolleyballfestival.com
breast.it
*.breast.it
bubbleshooter.run
*.bubbleshooter.run
carboxsg.wang
*.carboxsg.wang
card-finder-009.click
*.card-finder-009.click
carolmonda.com
*.carolmonda.com
carpoetry.com
*.carpoetry.com
cascadiaelite.com
*.cascadiaelite.com
casibom-719.com
*.casibom-719.com
chat8.my
*.chat8.my
cheap-holidays-eng.cyou
*.cheap-holidays-eng.cyou
christinecooper.info
*.christinecooper.info
clinic-bear-810413570.click
*.clinic-bear-810413570.click
clipblogger.com
*.clipblogger.com
cnikaronieasdalszone.shop
*.cnikaronieasdalszone.shop
coc-onlineservice.com
*.coc-onlineservice.com
coco66.in
*.coco66.in
coffeeevolved.com
*.coffeeevolved.com
collegefx.top
*.collegefx.top
collevision.com
*.collevision.com
colliersires.com
*.colliersires.com
colognecolognes.com
*.colognecolognes.com
colombabiancarosaline.com
*.colombabiancarosaline.com
computer-science-degree-1.cfd
*.computer-science-degree-1.cfd
conceptdesign.it
*.conceptdesign.it
connectnowcohley.com
*.connectnowcohley.com
containergardeningsecrets.xyz
*.containergardeningsecrets.xyz
creativekubosolutions.com
*.creativekubosolutions.com
creativetravelodyssey.live
*.creativetravelodyssey.live
creatorcontactteam.com
*.creatorcontactteam.com
crszfga100.vip
*.crszfga100.vip
cryptorugby.com
*.cryptorugby.com
ctrrghx.cyou
*.ctrrghx.cyou
cultinova.one
*.cultinova.one
custom-plastic-841862084.click
*.custom-plastic-841862084.click
custom-residential-266647365.click
*.custom-residential-266647365.click
cuxhaven.it
*.cuxhaven.it
debet.doctor
*.debet.doctor
deeplink.now
*.deeplink.now
denewerk.com
*.denewerk.com
clearzolira.it.com
*.clearzolira.it.com
zyy89.com
*.zyy89.com
Other domains in certificate