76/100 SECURITY SCORE

Certificate Information

Subject
CN=xcnth.vip
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 31, 2026
Valid Until
August 29, 2026 85 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FC:47:7B:B9:61:3E:FF:86:04:21:A6:73:97:EE:1C:75:B0:D3:00:88:7E:CA:89:E6:1C:85:F0:A4:06:58:CE:44
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

82 domains
detrango.com.br *.detrango.com.br *.124a8e57.detrango.com.br *.1393326f.detrango.com.br *.370db89a.detrango.com.br *.62069458.detrango.com.br *.850553b3.detrango.com.br *.8ad7a1fd-182a-4dfa-ac33-3eb79948c124.detrango.com.br *.admin.detrango.com.br *.analytics-production.detrango.com.br *.api.detrango.com.br *.app.detrango.com.br *.b0278dae.detrango.com.br *.backend.detrango.com.br *.betaus5qbgjq3v9yinzj4.detrango.com.br *.bi.detrango.com.br *.blog.detrango.com.br *.cpanel.detrango.com.br *.d2c3793f-74d8-4112-811d-724a0a9b1826.detrango.com.br *.dados.detrango.com.br *.db.detrango.com.br *.dev.detrango.com.br *.ebdisk.detrango.com.br *.ef813f33.detrango.com.br *.ezeftsql.detrango.com.br *.files.detrango.com.br *.gov.detrango.com.br *.home.detrango.com.br *.leilao.detrango.com.br *.llm.detrango.com.br *.m.detrango.com.br *.mail.detrango.com.br *.mobile.detrango.com.br *.ndom.detrango.com.br *.news.detrango.com.br *.pagamento.detrango.com.br *.pasta.detrango.com.br *.pay.detrango.com.br *.payment.detrango.com.br *.processo.detrango.com.br *.pwoeuwwe.detrango.com.br *.random.detrango.com.br *.s5qbgjq3v9yinzj4.detrango.com.br *.sandbox.detrango.com.br *.sistema.detrango.com.br *.sitemap.detrango.com.br *.sitemaps.detrango.com.br *.sql.detrango.com.br *.superset.detrango.com.br *.system.detrango.com.br *.vpn.detrango.com.br *.vps.detrango.com.br *.wap.detrango.com.br *.web.detrango.com.br *.webdisk.detrango.com.br *.webmail.detrango.com.br *.wew.detrango.com.br *.wwe.detrango.com.br *.www.detrango.com.br *.wwww.detrango.com.br

Other domains in certificate

airportcab.au *.airportcab.au
*.buzz.gbapksplus.net *.com.gbapksplus.net gbapksplus.net *.gbapksplus.net *.me.gbapksplus.net *.online.gbapksplus.net *.pl.gbapksplus.net *.pro.gbapksplus.net
hasansarkar.xyz *.hasansarkar.xyz *.school.hasansarkar.xyz
*.new.pgjoy.xyz pgjoy.xyz *.pgjoy.xyz *.shxtustaging.pgjoy.xyz
*.mail.storyofjesusforchildrenfilm.com storyofjesusforchildrenfilm.com *.storyofjesusforchildrenfilm.com
xcnth.vip *.xcnth.vip