Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bluecrossbc.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E8:99:5B:29:EE:A0:44:6B:A7:22:74:56:9C:22:1B:45:31:75:A8:6D:D7:D6:89:05:21:6D:60:B3:D8:EC:CE:31
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
bluecrossbc.com
*.bluecrossbc.com
*.www.bluecrossbc.com
13hsw.mom
*.13hsw.mom
1dc3z.lol
*.1dc3z.lol
2eugc.pics
*.2eugc.pics
2hu3n.lol
*.2hu3n.lol
30925.my
*.30925.my
348881.lol
*.348881.lol
34vef.pics
*.34vef.pics
418230.lol
*.418230.lol
443576.lol
*.443576.lol
45sgx.mom
*.45sgx.mom
4bneh.pics
*.4bneh.pics
5326s.mom
*.5326s.mom
5354520.top
*.5354520.top
556232.lol
*.556232.lol
58ts4.mom
*.58ts4.mom
5ksj5.mom
*.5ksj5.mom
632se.mom
*.632se.mom
6cjs1.mom
*.6cjs1.mom
6ss8.xyz
*.6ss8.xyz
6xsv9.mom
*.6xsv9.mom
723bt.lol
*.723bt.lol
composerforlife.info
*.composerforlife.info
confessionsfromtheconfessional.online
*.confessionsfromtheconfessional.online
controldatacyteam.info
*.controldatacyteam.info
*.com.creditbuilders.in
creditbuilders.in
*.creditbuilders.in
cushionfloor.com
*.cushionfloor.com
haebs.sbs
*.haebs.sbs
halwmeier.top
*.halwmeier.top
hero88.blog
*.hero88.blog
joker77.blog
*.joker77.blog
jsp3.xyz
*.jsp3.xyz
k1q93.lol
*.k1q93.lol
kaisar123.blog
*.kaisar123.blog
kinobar.inc
*.kinobar.inc
kseae.mom
*.kseae.mom
kxgqzu.my
*.kxgqzu.my
leipers.com
*.leipers.com
macan177.co
*.macan177.co
mahjong4d.blog
*.mahjong4d.blog
main4bcdn604.xyz
*.main4bcdn604.xyz
maxbet138.blog
*.maxbet138.blog
maxim138.blog
*.maxim138.blog
micromark3ting.xyz
*.micromark3ting.xyz
Other domains in certificate