Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=avamovie12.xyz
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 04, 2026
Valid Until
May 05, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8E:91:6F:53:E1:98:C4:FE:48:F7:4D:60:50:5E:41:4D:F0:AA:81:3F:B0:3A:D1:E9:35:6E:04:52:02:31:18:33
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
basdeo.com
*.basdeo.com
*.ww25.basdeo.com
*.ww38.basdeo.com
almadaestore.com
*.almadaestore.com
anxietyclinical-trialsmental-health.click
*.anxietyclinical-trialsmental-health.click
*.ww25.anxietyclinical-trialsmental-health.click
artlane.org
*.artlane.org
avamovie12.xyz
*.avamovie12.xyz
*.cicd.avamovie12.xyz
*.bet.betmatik0662.com
betmatik0662.com
*.betmatik0662.com
*.m.betmatik0662.com
*.autoconfig.bombastical.com
bombastical.com
*.bombastical.com
buraqcollections.com
*.buraqcollections.com
culinala.com
*.culinala.com
*.srv6.culinala.com
felknor.com
*.felknor.com
*.hostmaster.felknor.com
*.mailer.felknor.com
*.vpn.felknor.com
ghut.org
*.ghut.org
glarestudios.click
*.glarestudios.click
gorhensambaree.com
*.gorhensambaree.com
historianopaint.com
*.historianopaint.com
intcheevents.com
*.intcheevents.com
jaguarbuses.com
*.jaguarbuses.com
*.ww25.jaguarbuses.com
jjmplumbing.co.uk
*.jjmplumbing.co.uk
*.admin.kaati.com
*.connectvpn.kaati.com
kaati.com
*.kaati.com
*.host186.knowledgeworkers.com
*.host187.knowledgeworkers.com
knowledgeworkers.com
*.knowledgeworkers.com
*.sslvpn.knowledgeworkers.com
*.app.restazen.site
restazen.site
*.restazen.site
*.shop.restazen.site
*.api.slot404.site
*.login.slot404.site
slot404.site
*.slot404.site
*.www.slot404.site
sys569.com
*.sys569.com
*.assets.thenewcomers.com
*.hostmaster.thenewcomers.com
thenewcomers.com
*.thenewcomers.com
*.ww1.thenewcomers.com
*.ww25.thenewcomers.com
*.ww38.thenewcomers.com
*.d9sc7.tirwrack.com
*.ooh2z.tirwrack.com
tirwrack.com
*.tirwrack.com
*.demo.tucontador.com
tucontador.com
*.tucontador.com
*.ww1.tucontador.com
*.ww3.tucontador.com
tuimagenviral.com
*.tuimagenviral.com
zapatoscastilla.com
*.zapatoscastilla.com
Other domains in certificate