Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=dinheirowin.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
9B:14:28:3F:5B:27:46:98:21:6C:E1:22:C0:B7:F3:F2:93:E2:FE:06:3F:54:C8:39:C4:34:09:21:98:6C:C7:26
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
bs2web2.at
*.bs2web2.at
a3tech.website
*.a3tech.website
*.clinic.a3tech.website
affincange.be
*.affincange.be
ajforeignauto.com
*.ajforeignauto.com
balloon-letter-guy-glitch.me
*.balloon-letter-guy-glitch.me
*.ww1.balloon-letter-guy-glitch.me
cuddlefishreset.com
*.cuddlefishreset.com
despecialist.be
*.despecialist.be
dinheirowin.com
*.dinheirowin.com
everybodypanic.org
*.everybodypanic.org
*.alpha.filipino.chat
*.analytics.filipino.chat
*.ci.filipino.chat
*.dashboard.filipino.chat
filipino.chat
*.filipino.chat
*.random.filipino.chat
*.uat.filipino.chat
helps-veryonline.com
*.helps-veryonline.com
herindjayamulia.com
*.herindjayamulia.com
*.back.indemer.org
indemer.org
*.indemer.org
innobersatu.com
*.innobersatu.com
jakjeong.com
*.jakjeong.com
jarsaepainting.com
*.jarsaepainting.com
m4w.be
*.m4w.be
*.analytic.manhwaboner.online
manhwaboner.online
*.manhwaboner.online
*.random.manhwaboner.online
*.ww25.manhwaboner.online
marufeembalagens.com
*.marufeembalagens.com
mcsd160.com
*.mcsd160.com
nagordola.club
*.nagordola.club
*.a.pa.net.au
*.im.pa.net.au
pa.net.au
*.pa.net.au
*.ww38.pa.net.au
*.xac.pa.net.au
*.xgzx.pa.net.au
*.zs.pa.net.au
pretendenty-lordfilms.store
*.pretendenty-lordfilms.store
qdlove.store
*.qdlove.store
*.ww16.qdlove.store
regulio.be
*.regulio.be
rspen.be
*.rspen.be
sprinthurdlingteam.be
*.sprinthurdlingteam.be
*.es.surveyymonkey.com
*.nl.surveyymonkey.com
*.pt.surveyymonkey.com
surveyymonkey.com
*.surveyymonkey.com
themgirlz.com
*.themgirlz.com
*.ch.urocarehub.online
*.eos.urocarehub.online
*.hu.urocarehub.online
*.luxary.urocarehub.online
*.one.urocarehub.online
*.pro.urocarehub.online
*.trust.urocarehub.online
urocarehub.online
*.urocarehub.online
Other domains in certificate