Open
Cached
·
2h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aparnavyas.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 11, 2026
Valid Until
August 09, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E2:FC:8E:4C:00:2B:C7:A9:ED:D1:B1:CE:F9:C0:64:CD:6A:16:A5:99:DB:EC:E9:57:36:34:89:67:6F:EF:1D:EF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
cable315.cc
*.cable315.cc
aparnavyas.com
*.aparnavyas.com
bajajfin.top
*.bajajfin.top
bluesharksky.cyou
*.bluesharksky.cyou
calistogaschoolces.com
*.calistogaschoolces.com
car-detailing-ca.click
*.car-detailing-ca.click
car-price.sbs
*.car-price.sbs
car-repair-sg-953a7.shop
*.car-repair-sg-953a7.shop
careerexpedition.xyz
*.careerexpedition.xyz
cybervistaai.business
*.cybervistaai.business
dcj8yhz.top
*.dcj8yhz.top
fluxaro.co
*.fluxaro.co
*.1e220e16-91c2-4def-938b-8b54b86786a8.friendraising.com
*.autodiscover.friendraising.com
*.backup.friendraising.com
*.beta.friendraising.com
*.blog.friendraising.com
*.crm.friendraising.com
*.donorpro.friendraising.com
*.forum.friendraising.com
friendraising.com
*.friendraising.com
*.gw.friendraising.com
*.hostmaster.friendraising.com
*.imap.friendraising.com
*.m.friendraising.com
*.mail01.friendraising.com
*.mail02.friendraising.com
*.mail2.friendraising.com
*.mailgw.friendraising.com
*.mailin.friendraising.com
*.mailsrv.friendraising.com
*.mxs.friendraising.com
*.oa.friendraising.com
*.remote.friendraising.com
*.root.friendraising.com
*.secure.friendraising.com
*.server1.friendraising.com
*.sitemap.friendraising.com
*.sitemaps.friendraising.com
*.smtp1.friendraising.com
*.smtpauth.friendraising.com
*.wildcard.friendraising.com
*.ww11.friendraising.com
*.ww16.friendraising.com
*.ww17.friendraising.com
*.ww25.friendraising.com
*.ww38.friendraising.com
fzk.asia
*.fzk.asia
pk9580.xyz
*.pk9580.xyz
pneumococcal-disease-gf8v.click
*.pneumococcal-disease-gf8v.click
qqpkl.app
*.qqpkl.app
retrobits.co
*.retrobits.co
scienncedirect.com
*.scienncedirect.com
securejourneyway.xyz
*.securejourneyway.xyz
sskka.xyz
*.sskka.xyz
startup.land
*.startup.land
tailoryourcareer.xyz
*.tailoryourcareer.xyz
titanpuzzle640.shop
*.titanpuzzle640.shop
truenorthtraveler.xyz
*.truenorthtraveler.xyz
truthwithlight.info
*.truthwithlight.info
tv001-baiyun.com
*.tv001-baiyun.com
unlockingwealth.biz
*.unlockingwealth.biz
Other domains in certificate