Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aeur.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 27, 2026
Valid Until
July 26, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:EA:76:B6:AA:4F:F8:64:9C:89:6E:37:3B:9F:D7:2B:76:2D:E2:A3:92:8F:72:16:EA:4E:21:B3:54:A0:3A:06
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
btctrading.capital
*.btctrading.capital
27817443.vip
*.27817443.vip
28cnac.cyou
*.28cnac.cyou
33257.pet
*.33257.pet
59011.center
*.59011.center
62045.center
*.62045.center
8h-8h-udy5k.sbs
*.8h-8h-udy5k.sbs
aeur.com
*.aeur.com
*.imap.aeur.com
aqivf.com
*.aqivf.com
*.ar.arrand.com
arrand.com
*.arrand.com
*.backbone.arrand.com
*.db.arrand.com
*.drupal.arrand.com
*.eng.arrand.com
*.sc.arrand.com
*.upload.arrand.com
*.users.arrand.com
chcbq.nexus
*.chcbq.nexus
compre-seu-telefone-br-25apr.sbs
*.compre-seu-telefone-br-25apr.sbs
confirmationcomptebnp.com
*.confirmationcomptebnp.com
depression-test-32-ss-0k.sbs
*.depression-test-32-ss-0k.sbs
diymingle.xyz
*.diymingle.xyz
dnxkgy247773.top
*.dnxkgy247773.top
dreamwin573.top
*.dreamwin573.top
fitglobalpro.run
*.fitglobalpro.run
fitnessbalancepeak.run
*.fitnessbalancepeak.run
fitnessevolutionpath.run
*.fitnessevolutionpath.run
fitnessvaliant.run
*.fitnessvaliant.run
fitvaluesolutions.run
*.fitvaluesolutions.run
foxconn-app.com
*.foxconn-app.com
gerty.xyz
*.gerty.xyz
gostratstudios.com
*.gostratstudios.com
growthlaneventures.com
*.growthlaneventures.com
magnovideo.com
*.magnovideo.com
*.www.magnovideo.com
*.crm.mycoventry.com
*.hostmaster.mycoventry.com
mycoventry.com
*.mycoventry.com
*.ww11.mycoventry.com
*.ww16.mycoventry.com
*.ww25.mycoventry.com
*.www.mycoventry.com
naukluft.com
*.naukluft.com
oxutf.gdn
*.oxutf.gdn
peakatlasai.xyz
*.peakatlasai.xyz
plumbingservicesatlanta.com
*.plumbingservicesatlanta.com
*.my.premiercakes.co.uk
premiercakes.co.uk
*.premiercakes.co.uk
revenuebuildersgroup.com
*.revenuebuildersgroup.com
rexconsultants.com
*.rexconsultants.com
sana777.vip
*.sana777.vip
Other domains in certificate