Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=123820.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 30, 2026
Valid Until
April 30, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
95:0C:E0:B0:79:FD:33:D1:EA:EA:90:E6:C1:5A:B5:FF:D8:A1:69:C3:A9:74:3E:D3:29:5F:E3:72:04:3E:9B:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
123820.com
*.123820.com
285137.pictures
*.285137.pictures
51884.net
*.51884.net
53546.mobi
*.53546.mobi
53551.mobi
*.53551.mobi
53579.ac
*.53579.ac
58253.net
*.58253.net
582963.me
*.582963.me
63782.locker
*.63782.locker
73838.locker
*.73838.locker
776116.me
*.776116.me
85098.locker
*.85098.locker
95hoh8.shop
*.95hoh8.shop
98317.locker
*.98317.locker
akkivsh1056.vip
*.akkivsh1056.vip
auntyfact.com
*.auntyfact.com
avzxmf37.buzz
*.avzxmf37.buzz
ax1e4g7.top
*.ax1e4g7.top
ax9f6z6.top
*.ax9f6z6.top
ayj2tlpipwzoqwf.top
*.ayj2tlpipwzoqwf.top
bambooswap.com
*.bambooswap.com
bluehillfoundation.com
*.bluehillfoundation.com
boxoto.com
*.boxoto.com
br2z2n4.top
*.br2z2n4.top
c8dpom5k.top
*.c8dpom5k.top
cakeoclocks.in
*.cakeoclocks.in
care-centers-728332249.click
*.care-centers-728332249.click
cikawin46.org
*.cikawin46.org
cortisol-help-124438039.click
*.cortisol-help-124438039.click
datingcounselor.com
*.datingcounselor.com
diagnostic-imaging-528100335.click
*.diagnostic-imaging-528100335.click
dukaanmoon.com
*.dukaanmoon.com
e2eiwq.shop
*.e2eiwq.shop
e779iyp.cc
*.e779iyp.cc
ej7wkyp8.top
*.ej7wkyp8.top
eldalil.com
*.eldalil.com
em6e9u9.top
*.em6e9u9.top
fckjw5.net
*.fckjw5.net
focusdive.com
*.focusdive.com
*.dashboard.freysa.org
freysa.org
*.freysa.org
fw4t2b2.top
*.fw4t2b2.top
rqhofbp756.vip
*.rqhofbp756.vip
*.dashboard.slotsiptv.guide
slotsiptv.guide
*.slotsiptv.guide
venturecampers.com
*.venturecampers.com
Other domains in certificate