Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=soba.studio
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 09, 2026
Valid Until
April 09, 2026
46 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B4:0D:61:E9:21:A7:FA:A1:D3:72:7E:D3:E6:7B:74:3D:61:0B:80:2F:71:75:E0:8D:23:A9:93:9D:3F:FA:39:73
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ciong.com
*.ciong.com
*.1-ringtone.ciong.com
*.admin.ciong.com
*.agjs.ciong.com
*.analytics.ciong.com
*.aqjs.ciong.com
*.blog.ciong.com
*.demos.ciong.com
*.dev.ciong.com
*.emv1.ciong.com
*.gold.ciong.com
*.hotfix.ciong.com
*.insights.ciong.com
*.integration.ciong.com
*.lyrics.ciong.com
*.movies.ciong.com
*.random.ciong.com
*.report.ciong.com
*.ru.ciong.com
*.test.ciong.com
*.tp2.ciong.com
*.users.ciong.com
*.ww17.ciong.com
*.ww25.ciong.com
accounttitlemax.com
*.accounttitlemax.com
ballard-inc.co
*.ballard-inc.co
businessresearchinsights.co
*.businessresearchinsights.co
chandbpn.xyz
*.chandbpn.xyz
*.cpcontacts.chandbpn.xyz
collectmoments.com
*.collectmoments.com
*.fika.collectmoments.com
ecoconstructionltduk.co.uk
*.ecoconstructionltduk.co.uk
etboilerservices.co.uk
*.etboilerservices.co.uk
fei.us
*.fei.us
gascoynewa.com.au
*.gascoynewa.com.au
*.random.gascoynewa.com.au
*.ww25.gascoynewa.com.au
*.admin.hienmautinhnguyen.org
hienmautinhnguyen.org
*.hienmautinhnguyen.org
hrafn.me
*.hrafn.me
hubai365.club
*.hubai365.club
*.uk-news.hubai365.club
*.2834.huipeitao.com
huipeitao.com
*.huipeitao.com
isoft.life
*.isoft.life
lesbiansocial.club
*.lesbiansocial.club
lorenaweb.es
*.lorenaweb.es
*.random.lorenaweb.es
*.autodiscover.masjid.online
*.cpanel.masjid.online
*.cpcalendars.masjid.online
*.cpcontacts.masjid.online
masjid.online
*.masjid.online
*.webdisk.masjid.online
*.dilawarkumar.notesncert.online
notesncert.online
*.notesncert.online
rtpkapakbos.click
*.rtpkapakbos.click
soba.studio
*.soba.studio
starking37.me
*.starking37.me
sulzbacher.me
*.sulzbacher.me
tehnik.me
*.tehnik.me
vitium-mode.com
*.vitium-mode.com
*.ww25.yoyuporn.com
yoyuporn.com
*.yoyuporn.com
Other domains in certificate