Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=0penai.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
March 24, 2026
Valid Until
June 22, 2026
42 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FC:1A:E8:4E:88:6B:A5:8D:2C:A2:16:6F:BE:7A:C6:AA:14:EB:A2:1E:20:52:CC:0F:30:83:8F:32:CD:7F:EB:47
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
extratuf.com
*.extratuf.com
0penai.com
*.0penai.com
*.auto.0penai.com
*.chat.0penai.com
*.plat.0penai.com
*.15o.babysplash.app
*.2020.babysplash.app
*.a.babysplash.app
*.aaa.babysplash.app
*.ail.babysplash.app
*.alpha.babysplash.app
*.babysplare.babysplash.app
babysplash.app
*.babysplash.app
*.backoffice.babysplash.app
*.backup.babysplash.app
*.beta.babysplash.app
*.blog.babysplash.app
*.bloil.babysplash.app
*.broadcast.babysplash.app
*.chmail.babysplash.app
*.ci.babysplash.app
*.cmail.babysplash.app
*.cms.babysplash.app
*.cn.babysplash.app
*.coemail.babysplash.app
*.connect.babysplash.app
*.data.babysplash.app
*.davysonsplash.babysplash.app
*.davysontest.babysplash.app
*.demo.babysplash.app
*.developer.babysplash.app
*.dslst.babysplash.app
*.ecommerce.babysplash.app
*.erp.babysplash.app
*.forums.babysplash.app
*.help.babysplash.app
*.hmil.babysplash.app
*.hostmaster.babysplash.app
*.lancewebmail.babysplash.app
*.lms.babysplash.app
*.m.babysplash.app
*.mail.babysplash.app
*.main.babysplash.app
*.mobile.babysplash.app
*.mvideo.babysplash.app
*.my-royal-mail-supportre.babysplash.app
*.office.babysplash.app
*.old.babysplash.app
*.onl.babysplash.app
*.proxy.babysplash.app
*.qa.babysplash.app
*.secure.babysplash.app
*.shop.babysplash.app
*.site.babysplash.app
*.ssh.babysplash.app
*.ssl.babysplash.app
*.staging.babysplash.app
*.status.babysplash.app
*.supportre.babysplash.app
*.tesil.babysplash.app
*.test.babysplash.app
*.uat.babysplash.app
*.webappsfocure.babysplash.app
*.webmail.babysplash.app
checkoutadtools.com
*.checkoutadtools.com
justmattresses.net
*.justmattresses.net
*.ww38.justmattresses.net
meiwanda.com
*.meiwanda.com
*.www-robinhood.meiwanda.com
nyj.de
*.nyj.de
omasexbilder.de
*.omasexbilder.de
rihawolf.com
*.rihawolf.com
silkwormtattoo.com
*.silkwormtattoo.com
skillsgames.com
*.skillsgames.com
*.m.wx1.life
wx1.life
*.wx1.life
zinscrowd.de
*.zinscrowd.de
Other domains in certificate