Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=myfio.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 19, 2026
Valid Until
August 17, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:C5:E3:5F:52:30:9E:57:D4:2B:91:E0:14:38:43:4B:35:15:F1:E5:57:73:A0:98:98:65:90:F5:B6:FC:A1:AE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
dices.io
*.dices.io
15682.me
*.15682.me
2021ucrfiling.us
*.2021ucrfiling.us
222tk.xyz
*.222tk.xyz
357628.blog
*.357628.blog
37929.one
*.37929.one
657837.win
*.657837.win
79346.my
*.79346.my
ababes.co
*.ababes.co
aiqlimo.com
*.aiqlimo.com
alfrh.com
*.alfrh.com
allatories.co
*.allatories.co
awayweego.co
*.awayweego.co
bonnielove.co
*.bonnielove.co
bookmoonstone.co
*.bookmoonstone.co
careerjourneyfusion.xyz
*.careerjourneyfusion.xyz
catchrestaurants.co
*.catchrestaurants.co
cboiu.loan
*.cboiu.loan
chinesetranslators.com.au
*.chinesetranslators.com.au
circlecrop.co
*.circlecrop.co
crewbike.co
*.crewbike.co
darlingbeautybar.co
*.darlingbeautybar.co
directc.co
*.directc.co
everstwebdeals.co
*.everstwebdeals.co
expressionscatalog.co
*.expressionscatalog.co
ezwin33.co
*.ezwin33.co
ftnsbank.co
*.ftnsbank.co
gifttcardmall.co
*.gifttcardmall.co
goverticle.co
*.goverticle.co
grave-sol.co
*.grave-sol.co
greenticket.co
*.greenticket.co
growing.bot
*.growing.bot
healthylemonade.com
*.healthylemonade.com
janeposton.co
*.janeposton.co
lasereddirect.co
*.lasereddirect.co
myfio.com
*.myfio.com
*.qa10.myfio.com
*.qa8.myfio.com
*.wildcard.myfio.com
ohsaudits.com.au
*.ohsaudits.com.au
osteria.us
*.osteria.us
outdoosy.co
*.outdoosy.co
pa2ckellix.sbs
*.pa2ckellix.sbs
rocketgroup.co
*.rocketgroup.co
t38x.icu
*.t38x.icu
*.mail.xn--tqqs44fhtaf8x.com
xn--tqqs44fhtaf8x.com
*.xn--tqqs44fhtaf8x.com
Other domains in certificate