Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=13154.one
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 22, 2026
Valid Until
August 20, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:28:6B:60:D2:88:0E:69:D9:EB:C6:C9:20:20:C2:C7:54:B9:B8:1D:A0:56:91:58:62:99:5A:59:6B:7C:89:58
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
cwdf.org
*.cwdf.org
13154.one
*.13154.one
43390.blog
*.43390.blog
46ks.vip
*.46ks.vip
4uj7fugw7.cc
*.4uj7fugw7.cc
572315.com
*.572315.com
58013.win
*.58013.win
58228.pro
*.58228.pro
59717.mobi
*.59717.mobi
65864.blog
*.65864.blog
6699tkt.com
*.6699tkt.com
806731.com
*.806731.com
82406.bike
*.82406.bike
85752.club
*.85752.club
86628.lgbt
*.86628.lgbt
90168.me
*.90168.me
91620.center
*.91620.center
95926.one
*.95926.one
9e9wg8bez.top
*.9e9wg8bez.top
acceleratecareergoals.xyz
*.acceleratecareergoals.xyz
cg2ceh58c.world
*.cg2ceh58c.world
cryptoluxe.com
*.cryptoluxe.com
d73stack.lol
*.d73stack.lol
datakarma.xyz
*.datakarma.xyz
dieteticienne-en-ligne.net
*.dieteticienne-en-ligne.net
justed.org
*.justed.org
jwdc6my3z.world
*.jwdc6my3z.world
k64r.icu
*.k64r.icu
kayon-line.com
*.kayon-line.com
leadforcegame.digital
*.leadforcegame.digital
makyhk9o459ykrp.top
*.makyhk9o459ykrp.top
meezycollabroations.com
*.meezycollabroations.com
meezycollabroations.net
*.meezycollabroations.net
meezycollabroationscrew.com
*.meezycollabroationscrew.com
thegardenpathway.live
*.thegardenpathway.live
themexlevel.com
*.themexlevel.com
tiffany23.live
*.tiffany23.live
tp5mn0u8hk.top
*.tp5mn0u8hk.top
trektrustworthy.xyz
*.trektrustworthy.xyz
trinfo.co
*.trinfo.co
trinityagents.com
*.trinityagents.com
ttav28.com
*.ttav28.com
urbansoul.org
*.urbansoul.org
uterti.com
*.uterti.com
vehicle-trackers-r.click
*.vehicle-trackers-r.click
Other domains in certificate