Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=champak.club
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 02, 2026
Valid Until
May 03, 2026
79 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A9:47:E9:78:DE:03:2A:77:C9:04:F5:8D:41:72:7D:E0:6A:E5:79:41:20:7C:B9:E4:39:0F:6B:D6:70:52:6E:1A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
conmutacion.com
*.conmutacion.com
*.sitemap.conmutacion.com
azcpmpletehealth.com
*.azcpmpletehealth.com
*.demo.azcpmpletehealth.com
*.dev.azcpmpletehealth.com
*.magento.azcpmpletehealth.com
*.shop.azcpmpletehealth.com
*.staging.azcpmpletehealth.com
*.test.azcpmpletehealth.com
*.www.azcpmpletehealth.com
bpconnect.com
*.bpconnect.com
*.com.bpconnect.com
*.wildcard.bpconnect.com
champak.club
*.champak.club
*.fnxyh0bopz.champak.club
comparadores.com
*.comparadores.com
*.demo.comparadores.com
*.ww16.comparadores.com
cuflinkbank.com
*.cuflinkbank.com
*.remote.cuflinkbank.com
*.bg.evansvilleantiaging.com
*.ca.evansvilleantiaging.com
*.cs.evansvilleantiaging.com
*.de.evansvilleantiaging.com
*.el.evansvilleantiaging.com
*.es.evansvilleantiaging.com
evansvilleantiaging.com
*.evansvilleantiaging.com
*.fr.evansvilleantiaging.com
*.hi.evansvilleantiaging.com
*.hr.evansvilleantiaging.com
*.it.evansvilleantiaging.com
*.ja.evansvilleantiaging.com
*.ko.evansvilleantiaging.com
*.lt.evansvilleantiaging.com
*.lv.evansvilleantiaging.com
*.nl.evansvilleantiaging.com
*.no.evansvilleantiaging.com
*.pl.evansvilleantiaging.com
*.pt.evansvilleantiaging.com
*.ro.evansvilleantiaging.com
*.sk.evansvilleantiaging.com
*.sl.evansvilleantiaging.com
*.sr.evansvilleantiaging.com
*.sv.evansvilleantiaging.com
*.tr.evansvilleantiaging.com
*.uk.evansvilleantiaging.com
*.antivirus.hayrullah.com
hayrullah.com
*.hayrullah.com
*.prtg.hayrullah.com
highhill.studio
*.highhill.studio
ignixus.cfd
*.ignixus.cfd
*.the-simpsons-1989-imdb.ignixus.cfd
*.cn.javbbv.com
*.ip.javbbv.com
javbbv.com
*.javbbv.com
*.ww17.javbbv.com
*.ww38.javbbv.com
*.www.javbbv.com
pietrow.com
*.pietrow.com
*.ww38.pietrow.com
*.f1ff985e-89b2-4af1-92b7-91a190e4ecc6.toppasang123.site
*.m.toppasang123.site
toppasang123.site
*.toppasang123.site
*.dns.trurootznaturalhairsalon.com
*.hostmaster.trurootznaturalhairsalon.com
*.mx7.trurootznaturalhairsalon.com
trurootznaturalhairsalon.com
*.trurootznaturalhairsalon.com
*.www.trurootznaturalhairsalon.com
*.checkout.viccenza.com
*.pagamento.viccenza.com
viccenza.com
*.viccenza.com
*.ww25.viccenza.com
worldmarket.org
*.worldmarket.org
Other domains in certificate