Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nujafo.pro
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 21, 2026
Valid Until
August 19, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
89:78:E9:5E:DC:F6:EA:9F:64:88:D2:32:94:A5:55:2E:CE:6E:F5:EE:C2:D7:37:A1:51:09:94:2C:CD:3E:45:8C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
corner.ooo
*.corner.ooo
72988.one
*.72988.one
codabi.pro
*.codabi.pro
englishing.com
*.englishing.com
*.wap.englishing.com
fweiuhycwe.top
*.fweiuhycwe.top
fyldecoastfuels.com
*.fyldecoastfuels.com
fyuture.net
*.fyuture.net
gledanenakafe.org
*.gledanenakafe.org
godottedlinecomm.com
*.godottedlinecomm.com
goldchain-germany.today
*.goldchain-germany.today
goldring-germany.today
*.goldring-germany.today
hitfinds.xyz
*.hitfinds.xyz
igoal888.xyz
*.igoal888.xyz
igtlg.website
*.igtlg.website
indiates.click
*.indiates.click
inidubaislot.lat
*.inidubaislot.lat
istaloan.com
*.istaloan.com
looksmx.org
*.looksmx.org
lumbar-support-164230662.click
*.lumbar-support-164230662.click
marketingteampro.co
*.marketingteampro.co
md9cwy.cc
*.md9cwy.cc
new88x.pro
*.new88x.pro
nujafo.pro
*.nujafo.pro
offersmyloanquo.com
*.offersmyloanquo.com
outdoor-pergola-for-your-terrace.sbs
*.outdoor-pergola-for-your-terrace.sbs
peakvertextech.sbs
*.peakvertextech.sbs
phcdataincidentsettlement.co
*.phcdataincidentsettlement.co
tryfortificapitalagency.com
*.tryfortificapitalagency.com
tryfortifycaponline.com
*.tryfortifycaponline.com
ukuydm.cc
*.ukuydm.cc
used-car-taba2025-ca.click
*.used-car-taba2025-ca.click
videoveo.com
*.videoveo.com
vnhbkjm1376.vip
*.vnhbkjm1376.vip
vokime.pro
*.vokime.pro
vywtrq.com
*.vywtrq.com
w0i5qv.cyou
*.w0i5qv.cyou
warmlio.com
*.warmlio.com
warzsurvival.com
*.warzsurvival.com
waterproofing-companies-in-uae-4.click
*.waterproofing-companies-in-uae-4.click
waterproofing-companies-in-uae-8.click
*.waterproofing-companies-in-uae-8.click
wbpyj.loan
*.wbpyj.loan
webreakingbarrierz.com
*.webreakingbarrierz.com
wedding1.click
*.wedding1.click
wlp-study-english-abroad.xyz
*.wlp-study-english-abroad.xyz
Other domains in certificate