Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=efukt.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 23, 2026
Valid Until
April 23, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:4F:31:E8:04:95:12:11:6D:CF:D2:56:3E:07:88:B2:92:27:40:0A:D4:E4:A7:E5:16:23:E6:D8:35:84:93:4B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
80 domains
canari.io
*.canari.io
*.adr.canari.io
*.ai-new-site.canari.io
*.ai-static.canari.io
*.demo-stg.canari.io
*.igrane.canari.io
*.jose.canari.io
*.link.canari.io
*.myveggie.canari.io
*.nest.canari.io
*.nokefa.canari.io
*.oxbksdataai-contentcenter.canari.io
*.pegase-pp.canari.io
*.pingoo.canari.io
*.qrengine.canari.io
*.romain.canari.io
*.secretsberberes.canari.io
*.utopia.canari.io
*.ww25.canari.io
*.youpiliste.canari.io
724samsun.com
*.724samsun.com
*.ftp.724samsun.com
*.mail.724samsun.com
*.webmail.724samsun.com
*.whm.724samsun.com
*.www.724samsun.com
changnoimusic.com
*.changnoimusic.com
*.wildcard.changnoimusic.com
efukt.live
*.efukt.live
*.vpn.efukt.live
*.www.efukt.live
familydeals.store
*.familydeals.store
*.random.familydeals.store
*.sitemaps.familydeals.store
honglou9.xyz
*.honglou9.xyz
*.wildcard.honglou9.xyz
hopislander.com
*.hopislander.com
*.sso.hopislander.com
*.wildcard.hopislander.com
infinityspacesolutions.com
*.infinityspacesolutions.com
*.portal.infinityspacesolutions.com
saludtop.space
*.saludtop.space
*.sitemap.saludtop.space
*.ww38.saludtop.space
taiwin79.win
*.taiwin79.win
*.ww16.taiwin79.win
*.ww25.taiwin79.win
*.ww38.taiwin79.win
tanoshi.com.au
*.tanoshi.com.au
*.comune.vd.com.au
*.mail.vd.com.au
vd.com.au
*.vd.com.au
*.www.vd.com.au
*.mx7.viralpromotion.com
viralpromotion.com
*.viralpromotion.com
*.3sb4rm5zp8sy4w8a.worldcoin.email
*.57nljab6yzf0rn36.worldcoin.email
*.ejic27nng3bxygo7.worldcoin.email
*.forum.worldcoin.email
*.mkydeqy2dh51n9sg.worldcoin.email
*.ove4fg2fwhdpjb3v.worldcoin.email
worldcoin.email
*.worldcoin.email
*.ww25.worldcoin.email
*.xz9mq0rtc3hezyur.worldcoin.email
ximybkpxwu.com
*.ximybkpxwu.com
Other domains in certificate