Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sushicorp.org
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 12, 2026
Valid Until
September 10, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7F:A3:56:C6:61:5B:79:D5:D8:73:9B:EA:83:91:97:AB:B9:CF:52:A9:75:DC:24:4D:DC:47:BA:DE:76:7C:7B:2E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
84 domains
talent.land
*.talent.land
3292194.co
*.3292194.co
406225.cc
*.406225.cc
501674.my
*.501674.my
50801.co
*.50801.co
516639.com
*.516639.com
53px.cc
*.53px.cc
67450.my
*.67450.my
6k333.com
*.6k333.com
940445.com
*.940445.com
aianesthesio.com
*.aianesthesio.com
anshanshengxin.com
*.anshanshengxin.com
assessmentgear.com
*.assessmentgear.com
asthmaticai.com
*.asthmaticai.com
bellamodels.com
*.bellamodels.com
bhtax.gdn
*.bhtax.gdn
biejv.my
*.biejv.my
bitlittlebit.com
*.bitlittlebit.com
casibom810.cfd
*.casibom810.cfd
casinou.com
*.casinou.com
cavner.sbs
*.cavner.sbs
cbkor.gdn
*.cbkor.gdn
cbvrzzq288.vip
*.cbvrzzq288.vip
craftabegrowth.info
*.craftabegrowth.info
*.flower2.jian-de.com
jian-de.com
*.jian-de.com
*.integration.microsizeme.club
microsizeme.club
*.microsizeme.club
*.demo.napervillecharterbus.online
napervillecharterbus.online
*.napervillecharterbus.online
quasos.com
*.quasos.com
*.suporte.quasos.com
shaperomedia.com
*.shaperomedia.com
*.shop.shopfl.deals
shopfl.deals
*.shopfl.deals
simpson-judge.sbs
*.simpson-judge.sbs
smartprosperityplan.com
*.smartprosperityplan.com
sushicorp.org
*.sushicorp.org
*.www.sushicorp.org
t91568.xyz
*.t91568.xyz
thrku-web3.vip
*.thrku-web3.vip
truewinesales.com
*.truewinesales.com
trymarlinmarketing.top
*.trymarlinmarketing.top
*.b7oz9d.yitwa.com
*.dev.yitwa.com
yitwa.com
*.yitwa.com
Other domains in certificate