Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=canzcoafrica.space
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 27, 2025
Valid Until
March 27, 2026
32 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:B3:96:A3:8E:C0:D1:D9:D2:5C:65:F3:43:2C:DB:79:71:50:BB:E6:3D:54:BD:D3:2A:CA:AF:96:85:89:8E:F7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
conyui.org
*.conyui.org
786xg4kn.us
*.786xg4kn.us
aidrive.online
*.aidrive.online
beachbosyondemand.com
*.beachbosyondemand.com
canzcoafrica.space
*.canzcoafrica.space
chinesesecorner.org
*.chinesesecorner.org
confyui.org
*.confyui.org
cookiemonstersinc.org
*.cookiemonstersinc.org
czytac.com
*.czytac.com
*.random.czytac.com
dawnskorner.com
*.dawnskorner.com
desuarcbive.org
*.desuarcbive.org
galacticplanner.org
*.galacticplanner.org
gamehunterscs2.org
*.gamehunterscs2.org
grassrootspharmacy.org
*.grassrootspharmacy.org
gurillads.org
*.gurillads.org
hazzanabraham.info
*.hazzanabraham.info
*.pay.hazzanabraham.info
*.akkpn.icartarnow.pl
*.bui.icartarnow.pl
*.caljit.icartarnow.pl
*.com.icartarnow.pl
*.csnb.icartarnow.pl
*.fkvr.icartarnow.pl
*.gts.icartarnow.pl
*.hkvtbu.icartarnow.pl
*.hqoesh.icartarnow.pl
icartarnow.pl
*.icartarnow.pl
*.kluv.icartarnow.pl
*.krp.icartarnow.pl
*.lbno.icartarnow.pl
*.lht.icartarnow.pl
*.mdbahn.icartarnow.pl
*.mrkzos.icartarnow.pl
*.ntov.icartarnow.pl
*.ocrxx.icartarnow.pl
*.ozj.icartarnow.pl
*.peri.icartarnow.pl
*.qcqcyd.icartarnow.pl
*.qxrya.icartarnow.pl
*.rjvcep.icartarnow.pl
*.vqkjas.icartarnow.pl
*.wtk.icartarnow.pl
*.xul.icartarnow.pl
*.zup.icartarnow.pl
ipsosintersctive.com
*.ipsosintersctive.com
*.joes.ipsosintersctive.com
jacksonschools.org
*.jacksonschools.org
javieol.org
*.javieol.org
ladderstaftytraning.org
*.ladderstaftytraning.org
merudiaspora.org
*.merudiaspora.org
montecarlo-project.org
*.montecarlo-project.org
openproccesing.org
*.openproccesing.org
*.fblovppay.paidmmoak.live
paidmmoak.live
*.paidmmoak.live
*.syn-woodle.paidmmoak.live
*.ufavbqu.paidmmoak.live
*.checkout.spaceplaceapp.com
*.home.spaceplaceapp.com
*.shop.spaceplaceapp.com
spaceplaceapp.com
*.spaceplaceapp.com
watercaluculator.org
*.watercaluculator.org
Other domains in certificate