Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=build4you.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 02, 2026
Valid Until
July 31, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
30:5C:45:5F:10:96:78:7C:58:9D:9C:04:42:E2:C7:A6:3B:2D:80:C5:AA:F8:28:A2:8A:57:1C:1D:58:0C:D9:81
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
docupt.com
*.docupt.com
*.kingston.docupt.com
*.maricopaty.docupt.com
*.web.docupt.com
allensportsassociation.com
*.allensportsassociation.com
*.controlpanel.allensportsassociation.com
*.random.allensportsassociation.com
*.www-1.allensportsassociation.com
*.app.build4you.com
*.avito.build4you.com
*.beta.build4you.com
build4you.com
*.build4you.com
*.ozon.build4you.com
*.sberbank.build4you.com
*.sbermegamarket.build4you.com
*.www.build4you.com
*.dating.redlstowing.com
redlstowing.com
*.redlstowing.com
*.sitemap.redlstowing.com
*.sitemaps.redlstowing.com
*.store.redlstowing.com
*.users.redlstowing.com
*.video.redlstowing.com
*.wiki.redlstowing.com
*.analytics.ristorantiitaliani.com
*.argo.ristorantiitaliani.com
*.backend.ristorantiitaliani.com
*.bbs.ristorantiitaliani.com
*.bi.ristorantiitaliani.com
*.dashs.ristorantiitaliani.com
*.dev.ristorantiitaliani.com
*.hostmaster.ristorantiitaliani.com
*.intel.ristorantiitaliani.com
*.mail.ristorantiitaliani.com
*.relay.ristorantiitaliani.com
ristorantiitaliani.com
*.ristorantiitaliani.com
*.smtp3.ristorantiitaliani.com
*.staging.ristorantiitaliani.com
*.www.ristorantiitaliani.com
*.integration.shura.live
*.prod.shura.live
*.report.shura.live
shura.live
*.shura.live
*.anrucq.wxzx7.cfd
*.bgogue.wxzx7.cfd
*.bioech.wxzx7.cfd
*.btxkdf.wxzx7.cfd
*.cmdsyk.wxzx7.cfd
*.deq.wxzx7.cfd
*.dnd.wxzx7.cfd
*.dqu.wxzx7.cfd
*.dtptws.wxzx7.cfd
*.ezo.wxzx7.cfd
*.fjgtaw.wxzx7.cfd
*.izm.wxzx7.cfd
*.jagyzr.wxzx7.cfd
*.kbwfgs.wxzx7.cfd
*.krk.wxzx7.cfd
*.ksw.wxzx7.cfd
*.owf.wxzx7.cfd
*.ozvffc.wxzx7.cfd
*.pspnai.wxzx7.cfd
*.qmrnym.wxzx7.cfd
*.qrabaz.wxzx7.cfd
*.random.wxzx7.cfd
*.rzxdwa.wxzx7.cfd
*.sdz.wxzx7.cfd
*.tpmdkm.wxzx7.cfd
*.udajia.wxzx7.cfd
*.uumjav.wxzx7.cfd
*.wiuovp.wxzx7.cfd
wxzx7.cfd
*.wxzx7.cfd
*.bip.ziluoli2.beauty
*.ccl.ziluoli2.beauty
*.jpo.ziluoli2.beauty
*.noa.ziluoli2.beauty
*.pnc.ziluoli2.beauty
*.random.ziluoli2.beauty
*.ww25.ziluoli2.beauty
*.yyr.ziluoli2.beauty
ziluoli2.beauty
*.ziluoli2.beauty
Other domains in certificate