Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=toyrobotai.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 30, 2026
Valid Until
April 30, 2026
78 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
64:9A:14:3C:E7:5F:6C:0C:02:57:6F:D7:E5:FA:2B:70:22:CF:9B:31:56:13:FD:A0:63:9E:9A:41:1D:BF:BD:A1
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
deepdex.org
*.deepdex.org
*.dashboard.deepdex.org
*.dashboard.deepbot.io
deepbot.io
*.deepbot.io
gbsmrkjobclkqeuvpchw.com
*.gbsmrkjobclkqeuvpchw.com
gengwin22.net
*.gengwin22.net
gkczwo.net
*.gkczwo.net
headinjury-lawyers.com
*.headinjury-lawyers.com
hm5u6v3.top
*.hm5u6v3.top
housescanada.com
*.housescanada.com
hr1j5q4.top
*.hr1j5q4.top
insidegrow.com
*.insidegrow.com
instube.download
*.instube.download
integrousdialogue.com
*.integrousdialogue.com
istanbulkasko.com
*.istanbulkasko.com
itskode.com
*.itskode.com
jlllp7ukzsvqsfb.top
*.jlllp7ukzsvqsfb.top
jm62k5t8.top
*.jm62k5t8.top
judaicamart.com
*.judaicamart.com
jv4q8e1.top
*.jv4q8e1.top
kansasthebandtour.com
*.kansasthebandtour.com
kapten69go.com
*.kapten69go.com
kapten69pro.org
*.kapten69pro.org
keonhacais.live
*.keonhacais.live
keonhacais.today
*.keonhacais.today
kufflinkbank.com
*.kufflinkbank.com
kuflinkbank.com
*.kuflinkbank.com
lostgifts.com
*.lostgifts.com
ltrbv.academy
*.ltrbv.academy
ltuib.academy
*.ltuib.academy
*.data.polarademo.com
polarademo.com
*.polarademo.com
toyrobotai.com
*.toyrobotai.com
tw3c2b3.top
*.tw3c2b3.top
ufa1688win.com
*.ufa1688win.com
ufathailogin.com
*.ufathailogin.com
vegawumen.com
*.vegawumen.com
verticalswap.com
*.verticalswap.com
wheelhome.net
*.wheelhome.net
wildstrawberrymanga.com
*.wildstrawberrymanga.com
wjk8mgwg.top
*.wjk8mgwg.top
wjtwzwte.top
*.wjtwzwte.top
xn--fiq73fnvbuz3e.com
*.xn--fiq73fnvbuz3e.com
ys7q7h2.top
*.ys7q7h2.top
yt6d9e6.top
*.yt6d9e6.top
*.dashboard.yzi.network
yzi.network
*.yzi.network
Other domains in certificate