Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=shendalaw.community
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 03, 2026
Valid Until
September 01, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A6:6D:47:FE:35:B7:75:AA:E4:9F:86:D2:F9:6E:E1:21:90:4E:E0:80:21:D1:80:60:5C:66:D0:F0:E0:7D:D8:19
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
482634.top
*.482634.top
00897.co
*.00897.co
016839x.cc
*.016839x.cc
0603b65b7b3a549c9e2e.club
*.0603b65b7b3a549c9e2e.club
194161.cc
*.194161.cc
22369558.top
*.22369558.top
27598.loan
*.27598.loan
27653484.vip
*.27653484.vip
3068f.tv
*.3068f.tv
33045.xyz
*.33045.xyz
34944.co
*.34944.co
39229.co
*.39229.co
481240.vip
*.481240.vip
*.portal.481240.vip
481404.top
*.481404.top
481507.top
*.481507.top
482210.top
*.482210.top
*.portal.482210.top
483081.top
*.483081.top
*.portal.483081.top
483568.top
*.483568.top
483994.top
*.483994.top
486121.vip
*.486121.vip
486415.top
*.486415.top
486623.top
*.486623.top
488069.top
*.488069.top
488072.top
*.488072.top
506337.town
*.506337.town
55rx0jc3.com
*.55rx0jc3.com
628795.cc
*.628795.cc
6686-vn.click
*.6686-vn.click
notepathx.com
*.notepathx.com
nsfwfiles.cc
*.nsfwfiles.cc
*.portal.nsfwfiles.cc
paripesa-southafrica.app
*.paripesa-southafrica.app
*.ad.rld.de
*.bwww.rld.de
*.datenschutr.rld.de
*.dolizei.rld.de
*.fm.rld.de
*.java-wo.rld.de
*.justiz.rld.de
*.lsjv.rld.de
*.polizei.rld.de
rld.de
*.rld.de
*.ww25.rld.de
*.os.shendalaw.community
shendalaw.community
*.shendalaw.community
*.bb.tiktoke.com
tiktoke.com
*.tiktoke.com
*.tos-gcp.tiktoke.com
*.w.tiktoke.com
*.ww16.tiktoke.com
*.ww25.tiktoke.com
*.ww38.tiktoke.com
Other domains in certificate