Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=3up.in
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 14, 2026
Valid Until
August 12, 2026
71 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
41:6F:B2:53:DA:86:D4:E5:95:F2:E5:FF:7A:AA:7B:A9:D2:50:FE:3D:AF:9B:7F:15:8E:FC:4E:F7:48:B4:E4:44
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
bitr.net
*.bitr.net
10662.me
*.10662.me
13542.org
*.13542.org
136167.vip
*.136167.vip
1mupq3.top
*.1mupq3.top
26495153.vip
*.26495153.vip
27378826.vip
*.27378826.vip
288285.sbs
*.288285.sbs
337378.vip
*.337378.vip
36y18c.my
*.36y18c.my
37512.asia
*.37512.asia
38196.org
*.38196.org
3up.in
*.3up.in
*.cdn.3up.in
451393.one
*.451393.one
452388.one
*.452388.one
452419.one
*.452419.one
52590.asia
*.52590.asia
63385.loan
*.63385.loan
6434.my
*.6434.my
92309.blog
*.92309.blog
ambellahomecollection.com
*.ambellahomecollection.com
amberskieslakemartin.com
*.amberskieslakemartin.com
bedgoer.com
*.bedgoer.com
bestflashhub.org
*.bestflashhub.org
beverlyhillsremodeling.com
*.beverlyhillsremodeling.com
bhagavathyconsulting.com
*.bhagavathyconsulting.com
bubinga.app
*.bubinga.app
campaigly.com
*.campaigly.com
checkjs.top
*.checkjs.top
countynews.live
*.countynews.live
fallproofingflorida.com
*.fallproofingflorida.com
hubaobei.com
*.hubaobei.com
ikeaeu.club
*.ikeaeu.club
maren-723764129.click
*.maren-723764129.click
medjobs.com.au
*.medjobs.com.au
n8kvk2mnrju3tqw.cc
*.n8kvk2mnrju3tqw.cc
sisterbay.net
*.sisterbay.net
stowablesteering.com
*.stowablesteering.com
thinkwithmemoirghostwriting.co
*.thinkwithmemoirghostwriting.co
titobet.bet
*.titobet.bet
veiculos-eletricos-a-venda.sbs
*.veiculos-eletricos-a-venda.sbs
veifeiry.com
*.veifeiry.com
vqqla.rip
*.vqqla.rip
*.wap.zhuidui.com
zhuidui.com
*.zhuidui.com
Other domains in certificate