Open
Cached
·
just now
73/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=frontpage.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
December 26, 2025
Valid Until
March 26, 2026
29 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
03:99:4F:1A:47:AE:16:28:08:5F:F0:44:87:C2:63:E4:F8:B7:BE:8E:61:C5:03:17:56:CE:34:44:DE:CD:7A:4B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
81 domains
dateluvalley.com
*.dateluvalley.com
athletice.net
*.athletice.net
beguilingtorments.com
*.beguilingtorments.com
blrx.pro
*.blrx.pro
cybercroco.com
*.cybercroco.com
*.cpcalendars.dicksonappraisals.com
dicksonappraisals.com
*.dicksonappraisals.com
*.webdisk.dicksonappraisals.com
*.djhouse.djrajumanikpur.co
djrajumanikpur.co
*.djrajumanikpur.co
*.getsoft.djrajumanikpur.co
flairunify.net
*.flairunify.net
*.hmu.flairunify.net
frontpage.live
*.frontpage.live
gimy.be
*.gimy.be
kapitari.org
*.kapitari.org
*.nombredeempresa.kapitari.org
koto.live
*.koto.live
*.navigation.omegabet88.live
omegabet88.live
*.omegabet88.live
*.otc.omegabet88.live
paux.live
*.paux.live
paxcams.com
*.paxcams.com
*.random.paxcams.com
pencurimovie9.xyz
*.pencurimovie9.xyz
*.www.pencurimovie9.xyz
pubert.company
*.pubert.company
*.autodiscover.rbsc.online
*.cpanel.rbsc.online
*.cpcontacts.rbsc.online
*.mail.rbsc.online
rbsc.online
*.rbsc.online
*.rbsctl.rbsc.online
*.webdisk.rbsc.online
*.webmail.rbsc.online
safaltatak.com
*.safaltatak.com
shiro91.cc
*.shiro91.cc
*.ww25.shiro91.cc
sleepaid.pl
*.sleepaid.pl
*.random.spider-room.info
spider-room.info
*.spider-room.info
*.ns1.swallowx.com
*.random.swallowx.com
swallowx.com
*.swallowx.com
*.kjbm.thecshcollab.com
thecshcollab.com
*.thecshcollab.com
thuiszorgweb.be
*.thuiszorgweb.be
vnlink.org
*.vnlink.org
*.random.winrockengineering.com
winrockengineering.com
*.winrockengineering.com
*.m.yqmh.me
*.random.yqmh.me
yqmh.me
*.yqmh.me
Other domains in certificate