Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=17zw.cn
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 01, 2026
Valid Until
May 02, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7A:20:8F:59:10:58:B5:48:CC:D0:35:12:15:D6:62:B2:2D:5B:D4:87:D4:BC:24:20:44:6A:8D:5A:C5:8C:1F:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
elevate-studios.com
*.elevate-studios.com
17zw.cn
*.17zw.cn
345.tw
*.345.tw
3866cc.com
*.3866cc.com
39thavenue.com
*.39thavenue.com
40814.loan
*.40814.loan
463470.cc
*.463470.cc
46902.loan
*.46902.loan
82373.pizza
*.82373.pizza
91553.loan
*.91553.loan
airconditioningitaly230976.icu
*.airconditioningitaly230976.icu
akwaabamarket.com
*.akwaabamarket.com
alhassif.com
*.alhassif.com
allyblueonset.com
*.allyblueonset.com
angeloakmusicgroup.com
*.angeloakmusicgroup.com
begpn.pro
*.begpn.pro
belgraderestaurants.com
*.belgraderestaurants.com
bn06.top
*.bn06.top
buyphonesandpaylater388632.icu
*.buyphonesandpaylater388632.icu
captchagenie.com
*.captchagenie.com
cftmtd.loan
*.cftmtd.loan
cg79.top
*.cg79.top
cgq26.top
*.cgq26.top
cortisol-management335646.icu
*.cortisol-management335646.icu
cosli.org
*.cosli.org
cris.com.au
*.cris.com.au
dedb.org
*.dedb.org
deepgs.com
*.deepgs.com
fordfalconrepairmanuals.com.au
*.fordfalconrepairmanuals.com.au
hybridpower.com.au
*.hybridpower.com.au
journalforachange.com
*.journalforachange.com
kamagraukonline.com
*.kamagraukonline.com
minemodshub.com
*.minemodshub.com
minister-power.com
*.minister-power.com
mx30322.com
*.mx30322.com
petreplublic.com
*.petreplublic.com
plzhyy.cn
*.plzhyy.cn
prohibit.me
*.prohibit.me
qq72.vip
*.qq72.vip
salondelinvestissementsimmobilier.com
*.salondelinvestissementsimmobilier.com
santamonicainjury.com
*.santamonicainjury.com
spatial.website
*.spatial.website
splaboratories.com
*.splaboratories.com
uouku.com
*.uouku.com
useadsgencyteam.com
*.useadsgencyteam.com
Other domains in certificate