Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=5win-brazil.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 01, 2026
Valid Until
May 02, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E0:D9:E7:39:9E:0D:26:FE:A1:13:E5:24:98:B3:E4:5A:DB:AE:49:27:4A:13:EE:A9:79:02:D5:73:DF:F1:4F:D9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
checkstephub.com
*.checkstephub.com
128673.top
*.128673.top
348345.vip
*.348345.vip
47248.co
*.47248.co
5win-brazil.com
*.5win-brazil.com
*.rd.5win-brazil.com
678g.vg
*.678g.vg
72151.co
*.72151.co
75570.top
*.75570.top
76792.mobi
*.76792.mobi
79012.blog
*.79012.blog
7p92ghc1.top
*.7p92ghc1.top
84ux.top
*.84ux.top
912657.top
*.912657.top
91523.loan
*.91523.loan
95834.academy
*.95834.academy
966ylxx301.top
*.966ylxx301.top
970clx301.top
*.970clx301.top
98392.loan
*.98392.loan
99395.co
*.99395.co
99731.agency
*.99731.agency
abcede.com
*.abcede.com
accommodation.net.au
*.accommodation.net.au
actionheromedia.org
*.actionheromedia.org
ae0wquw.top
*.ae0wquw.top
allboxloja.online
*.allboxloja.online
austinburgrental.com
*.austinburgrental.com
basement-waterproofing-ca5-dp.click
*.basement-waterproofing-ca5-dp.click
basilnetwork.com
*.basilnetwork.com
bellwethercofffeeteam.com
*.bellwethercofffeeteam.com
bitcoinblockchain.com.au
*.bitcoinblockchain.com.au
bossbet88.cyou
*.bossbet88.cyou
byu67.top
*.byu67.top
caremedicall.com
*.caremedicall.com
driverhalte66.quest
*.driverhalte66.quest
futurepension-sl.com
*.futurepension-sl.com
get-checkstep.com
*.get-checkstep.com
intellicompanion.com
*.intellicompanion.com
matrix-ace.xyz
*.matrix-ace.xyz
southcarolina-ai.com
*.southcarolina-ai.com
tag3d.com
*.tag3d.com
trypreventscripts.com
*.trypreventscripts.com
*.vpn.worldclassbridal.com
worldclassbridal.com
*.worldclassbridal.com
xfnmekichan.xyz
*.xfnmekichan.xyz
xtremeholdem.com
*.xtremeholdem.com
Other domains in certificate