Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=0739.my
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 17, 2026
Valid Until
August 15, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CC:60:97:4B:A9:E0:E1:E3:9E:1D:9C:FD:BB:D6:77:DB:98:59:D3:0A:CB:30:94:8E:B9:59:9D:55:FC:34:5F:07
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
a360rpt.top
*.a360rpt.top
0739.my
*.0739.my
1170rpt301.top
*.1170rpt301.top
17c17c.cc
*.17c17c.cc
18156.my
*.18156.my
1888ty.win
*.1888ty.win
19821.locker
*.19821.locker
232635.locker
*.232635.locker
237482335.com
*.237482335.com
25078788.top
*.25078788.top
35145.my
*.35145.my
4086.my
*.4086.my
411285.xyz
*.411285.xyz
482636.xyz
*.482636.xyz
50036.click
*.50036.click
632548.lgbt
*.632548.lgbt
78zeros.com
*.78zeros.com
82408.top
*.82408.top
82767.click
*.82767.click
85459.adult
*.85459.adult
85743.xyz
*.85743.xyz
9opmbet.com
*.9opmbet.com
a352jys.top
*.a352jys.top
a353yyq.top
*.a353yyq.top
apartments-for-rent-2.click
*.apartments-for-rent-2.click
atomicraft.top
*.atomicraft.top
bancijagoan.com
*.bancijagoan.com
bank-bonus-4ce8u.click
*.bank-bonus-4ce8u.click
bastacasinot.top
*.bastacasinot.top
basywi.pro
*.basywi.pro
blueemoonco.com
*.blueemoonco.com
crash100.net
*.crash100.net
cw81c2eeet.cc
*.cw81c2eeet.cc
dnocpyucwhcmulb.cc
*.dnocpyucwhcmulb.cc
fechz5wdw.top
*.fechz5wdw.top
fenixp.top
*.fenixp.top
fenomenbetgirisleri.com
*.fenomenbetgirisleri.com
filuky.pro
*.filuky.pro
fmiz4zy.top
*.fmiz4zy.top
freecasinogames.pro
*.freecasinogames.pro
graphic-design-3.click
*.graphic-design-3.click
graphic-design-3g.click
*.graphic-design-3g.click
kiycqx.cc
*.kiycqx.cc
tirar-inscricaoonline.site
*.tirar-inscricaoonline.site
womenshealthmeds.org
*.womenshealthmeds.org
Other domains in certificate