Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=free-only.fun
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 24, 2026
Valid Until
August 22, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
47:C4:F5:27:A0:BD:78:B9:86:AE:31:14:44:B3:72:88:79:A4:45:6A:14:C9:FD:B3:89:C4:7A:85:AC:D3:10:0F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
adgame.onl
*.adgame.onl
01379.vip
*.01379.vip
081bylxx.top
*.081bylxx.top
10770.vip
*.10770.vip
13008.blog
*.13008.blog
14015.vip
*.14015.vip
14058.vip
*.14058.vip
19349.pro
*.19349.pro
1stglobalbk.com
*.1stglobalbk.com
24337.one
*.24337.one
39642.sbs
*.39642.sbs
3hno.org
*.3hno.org
3soft.net
*.3soft.net
4rs6mbfb1vzj.com
*.4rs6mbfb1vzj.com
50349.loan
*.50349.loan
59lfmkbpxzo.cc
*.59lfmkbpxzo.cc
88233vns.vip
*.88233vns.vip
89606042.top
*.89606042.top
biufor.com
*.biufor.com
bs3389.com
*.bs3389.com
c2e.co
*.c2e.co
cari-arah4d.pics
*.cari-arah4d.pics
catrailervault.com
*.catrailervault.com
cesuqy.pro
*.cesuqy.pro
cleanart.co
*.cleanart.co
clone.business
*.clone.business
cn-jpmorgam.com
*.cn-jpmorgam.com
coastal.finance
*.coastal.finance
cuore.bio
*.cuore.bio
dfsde.town
*.dfsde.town
*.amandacerny.free-only.fun
*.corinnakopf.free-only.fun
free-only.fun
*.free-only.fun
*.soniagrey.free-only.fun
haneyconstructionllc.com
*.haneyconstructionllc.com
w13725938.com
*.w13725938.com
wfmqlw.cyou
*.wfmqlw.cyou
x83a3ygubxnm.com
*.x83a3ygubxnm.com
xiix.info
*.xiix.info
xuqw83.qpon
*.xuqw83.qpon
z826udqq8e38.com
*.z826udqq8e38.com
zeusgampangmenang.com
*.zeusgampangmenang.com
zwtvuducjer.us
*.zwtvuducjer.us
zzz3332.top
*.zzz3332.top
zzz5776.top
*.zzz5776.top
zzz6886.top
*.zzz6886.top
Other domains in certificate