Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=synacal.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7F:B7:7A:5E:AD:F6:70:4D:35:07:46:4D:38:45:8F:8B:35:B8:57:CC:5B:85:B3:A7:5F:71:7C:13:B4:42:B2:92
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
windsurf.cc
*.windsurf.cc
serve.money
*.serve.money
sfjyq9a.top
*.sfjyq9a.top
sharpjapan.ir
*.sharpjapan.ir
shinobi.it
*.shinobi.it
sjkden0.cyou
*.sjkden0.cyou
smokkey.com
*.smokkey.com
snhey.com
*.snhey.com
solm.fun
*.solm.fun
sonharlar.com
*.sonharlar.com
sonic.global
*.sonic.global
stainless-steel-642224033.click
*.stainless-steel-642224033.click
standbyyou.it
*.standbyyou.it
stealthygossipgate.live
*.stealthygossipgate.live
steel-dumping-th-110.click
*.steel-dumping-th-110.click
steel-pipes-676655886.click
*.steel-pipes-676655886.click
stock-service-89111.click
*.stock-service-89111.click
stock-service-my-121.click
*.stock-service-my-121.click
strategem.host
*.strategem.host
stroke-304031977.click
*.stroke-304031977.click
synacal.com
*.synacal.com
tantalizingfoodexperiences.food
*.tantalizingfoodexperiences.food
te90poiowgrhdvowvrol.xyz
*.te90poiowgrhdvowvrol.xyz
tenerotti.it
*.tenerotti.it
tfqrvwevcbmyqbj.cc
*.tfqrvwevcbmyqbj.cc
vertebrale.it
*.vertebrale.it
vfjyzocm.xyz
*.vfjyzocm.xyz
vicedirettore.it
*.vicedirettore.it
viejazul.com
*.viejazul.com
vns54.com
*.vns54.com
vvv44.cc
*.vvv44.cc
warga69.com
*.warga69.com
webaddress.it
*.webaddress.it
websitethor138.icu
*.websitethor138.icu
wedding266167.icu
*.wedding266167.icu
weddingphotographer223744.icu
*.weddingphotographer223744.icu
weddingrevelryexperiences.beauty
*.weddingrevelryexperiences.beauty
winjuegos.com
*.winjuegos.com
wns12345678.com
*.wns12345678.com
wordlegame.net
*.wordlegame.net
workplacegrowth.sbs
*.workplacegrowth.sbs
wrappingpaper.it
*.wrappingpaper.it
wt32.top
*.wt32.top
xip626.top
*.xip626.top
xn--4pv686agmw.com
*.xn--4pv686agmw.com
Other domains in certificate