Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=10gforex.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 22, 2026
Valid Until
July 21, 2026
55 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8E:CE:2E:54:CD:EC:8C:96:62:AA:6E:A7:6E:34:F2:81:3D:5B:03:2C:84:69:17:7E:FF:32:58:12:6A:45:56:F0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
life.fm
*.life.fm
10gforex.com
*.10gforex.com
255258.lol
*.255258.lol
automationtools-fr.click
*.automationtools-fr.click
autos-sin-inicial-co.sbs
*.autos-sin-inicial-co.sbs
betxwiin.bet
*.betxwiin.bet
bkcwk.fishing
*.bkcwk.fishing
boostcompasslogic.company
*.boostcompasslogic.company
boostcompassspace.pro
*.boostcompassspace.pro
boostorbithub.info
*.boostorbithub.info
booststreamlabs.business
*.booststreamlabs.business
brightimpulselogic.business
*.brightimpulselogic.business
eglhero.com
*.eglhero.com
enkielixir.info
*.enkielixir.info
ew01b7f7gi.world
*.ew01b7f7gi.world
feedeaglepro.com
*.feedeaglepro.com
flowmatrixspace.company
*.flowmatrixspace.company
food-packaging-equipment.buzz
*.food-packaging-equipment.buzz
fusion-stocks.com
*.fusion-stocks.com
galu-kansai.com
*.galu-kansai.com
gameofblocks.io
*.gameofblocks.io
gehoortesten222-6v.sbs
*.gehoortesten222-6v.sbs
genetictreatment.org
*.genetictreatment.org
gethorizon.info
*.gethorizon.info
ghr-jb47.sbs
*.ghr-jb47.sbs
kuaiboxxx02.sbs
*.kuaiboxxx02.sbs
labcontrol.pro
*.labcontrol.pro
laptops-sale-uk-33.sbs
*.laptops-sale-uk-33.sbs
leadhunter.pro
*.leadhunter.pro
main55link.quest
*.main55link.quest
mangopartner.info
*.mangopartner.info
maxvivia.com
*.maxvivia.com
mihita.info
*.mihita.info
mindstreamx.info
*.mindstreamx.info
mj8jd.cc
*.mj8jd.cc
skellyhongkongflorist.com
*.skellyhongkongflorist.com
slot-games.casino
*.slot-games.casino
specialist4health.org
*.specialist4health.org
stepzone.info
*.stepzone.info
surgeon.tel
*.surgeon.tel
tip88.day
*.tip88.day
tqoneyyivw.club
*.tqoneyyivw.club
travel-elite.com
*.travel-elite.com
trycornellcontent.com
*.trycornellcontent.com
trymortgagehub.com
*.trymortgagehub.com
Other domains in certificate