Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=getdonorspring.xyz
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 05, 2026
Valid Until
September 03, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:A3:1E:7C:37:9C:A1:F4:0D:6A:AA:6B:AD:17:C2:B0:52:3F:4E:70:B9:41:13:D8:25:08:16:6B:D5:41:35:00
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
simplesdiy.com
*.simplesdiy.com
getdonorspring.xyz
*.getdonorspring.xyz
giuntis.com
*.giuntis.com
gleamhaveny.info
*.gleamhaveny.info
glynnstorm.com
*.glynnstorm.com
gossipepiphany.live
*.gossipepiphany.live
growthgridtoolkit.co
*.growthgridtoolkit.co
gtacwxgtacwxx.com
*.gtacwxgtacwxx.com
haosx.net
*.haosx.net
heavenchristianministries.com
*.heavenchristianministries.com
hisiliconsakura.com
*.hisiliconsakura.com
hsunderground.com
*.hsunderground.com
ikane.org
*.ikane.org
indiaiw.click
*.indiaiw.click
infocrafter.info
*.infocrafter.info
itjian.shop
*.itjian.shop
janet44.my
*.janet44.my
jds-liquidations.com
*.jds-liquidations.com
jobs.icu
*.jobs.icu
jxtz44.vip
*.jxtz44.vip
k02jkai4.xyz
*.k02jkai4.xyz
kavagie.com
*.kavagie.com
labet555.one
*.labet555.one
lanterna777.com
*.lanterna777.com
linearsea.com
*.linearsea.com
logiviewx.info
*.logiviewx.info
marineridge.pro
*.marineridge.pro
maximizedatacyplatform.info
*.maximizedatacyplatform.info
md869.xyz
*.md869.xyz
memoirghostwritinghq.digital
*.memoirghostwritinghq.digital
mhpcm.gdn
*.mhpcm.gdn
mightyoutreachministries.com
*.mightyoutreachministries.com
pptube.club
*.pptube.club
professionaltravelpath.live
*.professionaltravelpath.live
qyejr.work
*.qyejr.work
redatrixlab.com
*.redatrixlab.com
sean02.my
*.sean02.my
securepage.org
*.securepage.org
sky77slot.shop
*.sky77slot.shop
slantedmgmt.com
*.slantedmgmt.com
slashekknj.world
*.slashekknj.world
smartfundflow.click
*.smartfundflow.click
solaire.live
*.solaire.live
soliv.site
*.soliv.site
solovela.com
*.solovela.com
Other domains in certificate