Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=257034.shop
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7B:91:12:D4:9B:92:BF:D2:92:DE:DC:BD:C5:8D:52:9D:49:AE:39:A7:29:39:75:A1:EC:68:D3:58:2E:CC:06:B7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
deepfomo.com
*.deepfomo.com
22209.locker
*.22209.locker
257034.shop
*.257034.shop
442034.cc
*.442034.cc
56692.pizza
*.56692.pizza
56697.pizza
*.56697.pizza
6pqx2i.my
*.6pqx2i.my
78740.co
*.78740.co
80-25-iixc.vip
*.80-25-iixc.vip
933h.cc
*.933h.cc
950039.cc
*.950039.cc
aifreak.site
*.aifreak.site
aitech.monster
*.aitech.monster
artemiscode.site
*.artemiscode.site
benvip.info
*.benvip.info
capetownoffshoringlabs.com
*.capetownoffshoringlabs.com
car-rental1.tokyo
*.car-rental1.tokyo
comfortmagic.site
*.comfortmagic.site
dblikes.cyou
*.dblikes.cyou
deepnl.org
*.deepnl.org
deeuom.com
*.deeuom.com
defaisystem.com
*.defaisystem.com
defipaa.com
*.defipaa.com
desiredtrust.com
*.desiredtrust.com
donkeucuu.com
*.donkeucuu.com
downloadjoker123apk.site
*.downloadjoker123apk.site
hktramstation.com
*.hktramstation.com
intruderai.com
*.intruderai.com
inventory-software.click
*.inventory-software.click
investmaster.site
*.investmaster.site
investmentadvisor.asia
*.investmentadvisor.asia
investmentfonds-anlegen-1.cfd
*.investmentfonds-anlegen-1.cfd
investorlife.site
*.investorlife.site
8897.it.com
*.8897.it.com
buildfast.it.com
*.buildfast.it.com
cryptogains.it.com
*.cryptogains.it.com
cryptohub.it.com
*.cryptohub.it.com
nhovy.loan
*.nhovy.loan
nhrbsz3azhrabi.cc
*.nhrbsz3azhrabi.cc
nichesuggestions.site
*.nichesuggestions.site
patagontoken.site
*.patagontoken.site
play-apex-horizon.xyz
*.play-apex-horizon.xyz
play-connect.site
*.play-connect.site
plder01.cyou
*.plder01.cyou
Other domains in certificate