Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=03096.my
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 25, 2026
Valid Until
August 23, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
61:7F:67:1D:20:29:6C:0B:7A:E7:9F:96:84:83:8D:88:30:8F:35:86:5E:45:B5:09:95:50:4C:59:6C:FE:11:3D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
dovarri.com
*.dovarri.com
03096.my
*.03096.my
116699jj.cc
*.116699jj.cc
293761.lol
*.293761.lol
345e.gg
*.345e.gg
389r.co
*.389r.co
43941.town
*.43941.town
492250.lol
*.492250.lol
58639.town
*.58639.town
60098.blog
*.60098.blog
778771.lol
*.778771.lol
790019.com
*.790019.com
a383yyq.top
*.a383yyq.top
actualisatie-belgium.it.com
*.actualisatie-belgium.it.com
archivoddf.com
*.archivoddf.com
auroraharmony.com
*.auroraharmony.com
besikode4d.com
*.besikode4d.com
birminghamfestivals.com
*.birminghamfestivals.com
brodikode4d.com
*.brodikode4d.com
corvance.com
*.corvance.com
dmwgh.town
*.dmwgh.town
dramago.mom
*.dramago.mom
druid.lol
*.druid.lol
dtksi.town
*.dtksi.town
ebdesignsblog.com
*.ebdesignsblog.com
gjbhc.town
*.gjbhc.town
gwdmg.town
*.gwdmg.town
gwdyz.town
*.gwdyz.town
hitclub68.in
*.hitclub68.in
hqzey.town
*.hqzey.town
ibfto.town
*.ibfto.town
jin69spin.org
*.jin69spin.org
kaptenbaru.xyz
*.kaptenbaru.xyz
kk9kca.cc
*.kk9kca.cc
kokomo-tech.com
*.kokomo-tech.com
kpxfz.town
*.kpxfz.town
laku77.me
*.laku77.me
libraryegov.org
*.libraryegov.org
mabar69ads.vip
*.mabar69ads.vip
magdaarcher.com
*.magdaarcher.com
marlviasheglobalinitiative.org
*.marlviasheglobalinitiative.org
maung88tour.com
*.maung88tour.com
mdzep.town
*.mdzep.town
memtapes.info
*.memtapes.info
nokia303ku.com
*.nokia303ku.com
Other domains in certificate