Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aiauditorium.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 21, 2026
Valid Until
August 19, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5D:C3:30:12:BA:27:AF:1E:76:CD:ED:36:3D:F8:50:59:DA:3F:23:F5:4A:71:3E:F4:34:A4:B5:5F:AB:F3:05:56
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
stomind.cn
*.stomind.cn
01gay-porn.net
*.01gay-porn.net
05191.one
*.05191.one
08916.one
*.08916.one
095728.lgbt
*.095728.lgbt
13017.blog
*.13017.blog
14tvx.cc
*.14tvx.cc
17462.vip
*.17462.vip
18691.one
*.18691.one
202700.lgbt
*.202700.lgbt
22726.click
*.22726.click
23768.loan
*.23768.loan
24274.com
*.24274.com
32721.one
*.32721.one
33448.loan
*.33448.loan
33448.my
*.33448.my
42591.blog
*.42591.blog
43161.lgbt
*.43161.lgbt
45729.blog
*.45729.blog
46821.blog
*.46821.blog
48424.loan
*.48424.loan
51018.loan
*.51018.loan
523876.world
*.523876.world
527687.club
*.527687.club
5301953.xyz
*.5301953.xyz
aiauditorium.com
*.aiauditorium.com
*.test.aiauditorium.com
profitprimepro.com
*.profitprimepro.com
qxdch.top
*.qxdch.top
realmaction550.info
*.realmaction550.info
retrolegend177.info
*.retrolegend177.info
richy887.xyz
*.richy887.xyz
rnano.loan
*.rnano.loan
rockeshipoffer.com
*.rockeshipoffer.com
roulette.spot
*.roulette.spot
royalreels16.org
*.royalreels16.org
rqcu9.top
*.rqcu9.top
schlappentour.com
*.schlappentour.com
skull.one
*.skull.one
stellar.spot
*.stellar.spot
*.v2.stellar.spot
tabihapi.com
*.tabihapi.com
wenacquisition.info
*.wenacquisition.info
xn--7rsp91g.com
*.xn--7rsp91g.com
xshopwa.xyz
*.xshopwa.xyz
xx5561.cc
*.xx5561.cc
Other domains in certificate