Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=jqzgbj.shop
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 16, 2026
Valid Until
August 14, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
54:F1:45:C9:9B:C9:BF:1E:81:DD:E4:60:1A:DE:5A:6D:17:18:D4:1F:E9:EA:5C:44:FE:C1:E9:9C:39:9C:7D:2A
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
combatgearshop.info
*.combatgearshop.info
*.admin.combatgearshop.info
*.api.combatgearshop.info
*.app.combatgearshop.info
*.cmsru.combatgearshop.info
*.demo.combatgearshop.info
*.dev.combatgearshop.info
*.ecmsru.combatgearshop.info
*.info7de-b011-91aea00e41ab.combatgearshop.info
*.test.combatgearshop.info
be-dev.site
*.be-dev.site
*.common.be-dev.site
*.sannod.be-dev.site
*.svyt.be-dev.site
*.test.be-dev.site
*.admin.fedfusion.io
*.api.fedfusion.io
*.apps.fedfusion.io
*.assets.fedfusion.io
*.bot.fedfusion.io
*.dashboard.fedfusion.io
*.demo.fedfusion.io
*.dev.fedfusion.io
fedfusion.io
*.fedfusion.io
*.nundipanel.fedfusion.io
*.panel.fedfusion.io
*.test.fedfusion.io
*.user.fedfusion.io
*.app.frankey-s.com
frankey-s.com
*.frankey-s.com
*.kazan.frankey-s.com
*.m.frankey-s.com
*.mail.frankey-s.com
*.mail1.frankey-s.com
*.mail2.frankey-s.com
*.new.frankey-s.com
*.staging.frankey-s.com
*.test.frankey-s.com
*.uat.frankey-s.com
*.vpn.frankey-s.com
*.www.frankey-s.com
hartfordpartyanalysis.com
*.hartfordpartyanalysis.com
hartfordpre-investmentdd.com
*.hartfordpre-investmentdd.com
hartfordpreinvestmentdd.com
*.hartfordpreinvestmentdd.com
hartfordrepcheck.com
*.hartfordrepcheck.com
hartfordriskmanagement.org
*.hartfordriskmanagement.org
hartfordriskreport.com
*.hartfordriskreport.com
*.api.hashgraph.now
*.app.hashgraph.now
*.demo.hashgraph.now
hashgraph.now
*.hashgraph.now
*.staging.hashgraph.now
*.support.hashgraph.now
*.test.hashgraph.now
*.w54wp9.hashgraph.now
jpsclub22.com
*.jpsclub22.com
jpsclub24.com
*.jpsclub24.com
jpsclub27.com
*.jpsclub27.com
jpsclub28.com
*.jpsclub28.com
jqzgbj.shop
*.jqzgbj.shop
jrmpvql.onl
*.jrmpvql.onl
jsymsqm608.vip
*.jsymsqm608.vip
judynsf1408.vip
*.judynsf1408.vip
*.blog.kraken19-at.net
*.hostmaster.kraken19-at.net
kraken19-at.net
*.kraken19-at.net
*.test.kraken19-at.net
*.webmail.kraken19-at.net
pjhcmvx336.vip
*.pjhcmvx336.vip
Other domains in certificate