Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=atbfep.top
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 13, 2026
Valid Until
May 14, 2026
89 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4E:50:58:0F:1C:93:4C:2C:22:35:2D:DA:F8:FE:9B:13:4F:7A:87:7E:8B:46:7B:C2:0A:88:F8:3E:93:0F:80:29
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
cafedecuba.com
*.cafedecuba.com
*.api.cafedecuba.com
*.dev.cafedecuba.com
*.mail.cafedecuba.com
*.test.cafedecuba.com
*.ww1.cafedecuba.com
*.ww11.cafedecuba.com
atbfep.top
*.atbfep.top
aurimar.com
*.aurimar.com
*.dev.aurimar.com
*.mail.aurimar.com
*.sitemaps.aurimar.com
*.test.aurimar.com
*.ww16.aurimar.com
*.ww17.aurimar.com
*.ww25.aurimar.com
*.www.aurimar.com
casinorecensione.it
*.casinorecensione.it
*.demo.casinorecensione.it
clokaroniiosdalwrk.cyou
*.clokaroniiosdalwrk.cyou
*.smtp.clokaroniiosdalwrk.cyou
*.whm.clokaroniiosdalwrk.cyou
*.dev.fulldrive.it
fulldrive.it
*.fulldrive.it
*.box.groupecreativ.com
*.gestion.groupecreativ.com
groupecreativ.com
*.groupecreativ.com
*.og.groupecreativ.com
*.ogadgets.groupecreativ.com
hindubetb.com
*.hindubetb.com
*.cxgyum.ilfuturo.com
ilfuturo.com
*.ilfuturo.com
*.sitemap.ilfuturo.com
*.v2.ilfuturo.com
*.wildcard.ilfuturo.com
netjump.it
*.netjump.it
*.staging.netjump.it
nordicskis.com
*.nordicskis.com
*.ffffffffffff.nqib.com
nqib.com
*.nqib.com
*.wildcard.nqib.com
onpoint.it
*.onpoint.it
*.staging.onpoint.it
*.analytic.operamin.com
*.download.operamin.com
*.facebook.operamin.com
*.fb.operamin.com
*.fp.operamin.com
*.http.operamin.com
*.m.operamin.com
operamin.com
*.operamin.com
*.porno.operamin.com
*.server4-1.operamin.com
*.server4.operamin.com
*.ttp.operamin.com
*.waptrick.operamin.com
*.ww25.operamin.com
*.ww35.operamin.com
*.www.operamin.com
*.m.pegasusscreen.live
*.ns2.pegasusscreen.live
pegasusscreen.live
*.pegasusscreen.live
stofe.de
*.stofe.de
*.ww25.stofe.de
*.www.stofe.de
*.m.vanguardsciences.biz
*.random.vanguardsciences.biz
vanguardsciences.biz
*.vanguardsciences.biz
*.blog.voglio.com
*.reporting.voglio.com
voglio.com
*.voglio.com
Other domains in certificate