Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=apq37.icu
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F7:51:BA:60:2A:DF:E1:29:DF:DD:EE:F5:82:EC:EE:AB:67:01:0C:7C:BC:7D:4E:63:97:AE:E9:6C:EC:83:E6:40
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
arthabahas.com
*.arthabahas.com
almanak-mag.com
*.almanak-mag.com
appbridgecoo.one
*.appbridgecoo.one
appcodezip.com
*.appcodezip.com
apq37.icu
*.apq37.icu
arianaafghancuisine.com
*.arianaafghancuisine.com
bestbettingsitesreview.com
*.bestbettingsitesreview.com
bitsaevents.com
*.bitsaevents.com
brandsack.com
*.brandsack.com
buy-car.sbs
*.buy-car.sbs
casewing.net
*.casewing.net
chapelhill-carrboro-naacp.org
*.chapelhill-carrboro-naacp.org
chihtu.org
*.chihtu.org
com-1xbet.site
*.com-1xbet.site
common-wealthfund.org
*.common-wealthfund.org
daniel-d-r-thomas.com
*.daniel-d-r-thomas.com
dhmain512am.xyz
*.dhmain512am.xyz
diamondnovahrs.com
*.diamondnovahrs.com
dunive.com
*.dunive.com
dvdaudios.com
*.dvdaudios.com
efjcv.com
*.efjcv.com
etjpik.app
*.etjpik.app
fcpuqsqfrdryijfpojbc.com
*.fcpuqsqfrdryijfpojbc.com
freaks-agency.com
*.freaks-agency.com
free-smileys-free.com
*.free-smileys-free.com
gethpa.click
*.gethpa.click
getunsupervisedadvertising.co
*.getunsupervisedadvertising.co
ggx22.icu
*.ggx22.icu
globalcountingsystems.asia
*.globalcountingsystems.asia
gobridgecoo.com
*.gobridgecoo.com
guard-in-423.sbs
*.guard-in-423.sbs
gun-politics.org
*.gun-politics.org
gyhcpengbaoer.com
*.gyhcpengbaoer.com
hdmoviearea.live
*.hdmoviearea.live
maubeuge2008.org
*.maubeuge2008.org
thevolleyballman.com
*.thevolleyballman.com
tipekj.app
*.tipekj.app
tires-at-4714.sbs
*.tires-at-4714.sbs
tires-au-4313.sbs
*.tires-au-4313.sbs
tires-be-4356.sbs
*.tires-be-4356.sbs
yarienafaire.com
*.yarienafaire.com
ysf-car-unlocking-uk.click
*.ysf-car-unlocking-uk.click
zbsaifute.com
*.zbsaifute.com
ze-ados.com
*.ze-ados.com
zepline.app
*.zepline.app
Other domains in certificate