Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sycaac.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 11, 2026
Valid Until
April 11, 2026
57 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
54:6A:E7:99:C9:EC:59:68:35:1E:91:21:98:5E:B6:2C:B2:7D:C9:7B:83:43:99:E6:C1:A5:E9:E2:C2:41:94:D6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
espinar.com
*.espinar.com
*.ask.espinar.com
*.edge.espinar.com
*.m.espinar.com
*.www.espinar.com
ai-movie.club
*.ai-movie.club
*.login.ai-movie.club
*.www.ai-movie.club
airplayer.net
*.airplayer.net
*.app.airplayer.net
*.m.airplayer.net
*.remote.airplayer.net
*.ww.airplayer.net
*.wwe.airplayer.net
alfamedtr.com
*.alfamedtr.com
*.dan.alfamedtr.com
*.pop.alfamedtr.com
atenasblade.store
*.atenasblade.store
bejoseeds.be
*.bejoseeds.be
boosterpromocoes.com
*.boosterpromocoes.com
colormac.com
*.colormac.com
*.home.colormac.com
*.sso.colormac.com
eder.store
*.eder.store
*.silane.eder.store
elsa-jean.net
*.elsa-jean.net
film-tv.club
*.film-tv.club
*.full-hd.film-tv.club
*.good.film-tv.club
*.good1.film-tv.club
*.hd.film-tv.club
gfnudes.com
*.gfnudes.com
gourmetsardinia.com
*.gourmetsardinia.com
hitzomp3.xyz
*.hitzomp3.xyz
insulte.com
*.insulte.com
*.random.insulte.com
louisd.xyz
*.louisd.xyz
myaccountaccess.live
*.myaccountaccess.live
*.ns.myaccountaccess.live
oriontool.io
*.oriontool.io
osbsmartboard.com
*.osbsmartboard.com
*.cpanel.rumahslot777rtp.site
rumahslot777rtp.site
*.rumahslot777rtp.site
saradadyforcongress.com
*.saradadyforcongress.com
*.ww25.saradadyforcongress.com
savita.live
*.savita.live
shogun77jp.site
*.shogun77jp.site
soldout.media
*.soldout.media
*.g.sycaac.com
sycaac.com
*.sycaac.com
*.domains.thepennystocktimes.com
*.s121.thepennystocktimes.com
thepennystocktimes.com
*.thepennystocktimes.com
ultravision.pro
*.ultravision.pro
*.ww38.ultravision.pro
university-dekho.com
*.university-dekho.com
unreleased.au
*.unreleased.au
vanilliabalance.com
*.vanilliabalance.com
wwwrecapdujour.be
*.wwwrecapdujour.be
Other domains in certificate