Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nhlalumniraffles.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7C:33:23:9E:EA:EB:42:D2:70:82:03:D1:49:59:62:09:81:41:02:8E:A2:C8:E3:F4:70:EC:C8:32:C6:8A:60:CC
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
factsnotfear.org
*.factsnotfear.org
11017014.top
*.11017014.top
357889.top
*.357889.top
44030.my
*.44030.my
441960.vip
*.441960.vip
45360737.top
*.45360737.top
51cgy16.cn
*.51cgy16.cn
538045.vip
*.538045.vip
73777vv.cc
*.73777vv.cc
74x1.xyz
*.74x1.xyz
dealhunter.cfd
*.dealhunter.cfd
departmentofgovernmentefficiencygov.com
*.departmentofgovernmentefficiencygov.com
digitalleadershipcoaching.com
*.digitalleadershipcoaching.com
digitalvertexspace.info
*.digitalvertexspace.info
disciplineyourmind.com
*.disciplineyourmind.com
dnxkgy926449.top
*.dnxkgy926449.top
*.ibd1ydxg20250120099dy.dnxkgy926449.top
*.32.healthapdataprivacylitigation.com
healthapdataprivacylitigation.com
*.healthapdataprivacylitigation.com
jesunimofe.com
*.jesunimofe.com
kontradiksi.com
*.kontradiksi.com
*.wpt.kontradiksi.com
lyxslyl.top
*.lyxslyl.top
*.backend.mems.it
*.hostmaster.mems.it
mems.it
*.mems.it
*.mx.nhlalumniraffles.org
nhlalumniraffles.org
*.nhlalumniraffles.org
*.ns.nhlalumniraffles.org
*.pipeline.nhlalumniraffles.org
*.ww38.nhlalumniraffles.org
obd2equipment.com
*.obd2equipment.com
pgxmn.channel
*.pgxmn.channel
*.p1snll4779.piphar.live
piphar.live
*.piphar.live
sundancefuels.com
*.sundancefuels.com
superbanteng69.com
*.superbanteng69.com
swiftenergygroup.com
*.swiftenergygroup.com
system-moonerradar.com
*.system-moonerradar.com
tesladriveapp.com
*.tesladriveapp.com
thf2d.top
*.thf2d.top
tlcxcy.com
*.tlcxcy.com
top88r.win
*.top88r.win
trafficriderapkpro.com
*.trafficriderapkpro.com
ucnfg41.top
*.ucnfg41.top
ukaki.town
*.ukaki.town
wetzeldevinemail.com
*.wetzeldevinemail.com
wirelessdrone.com
*.wirelessdrone.com
workwithtape22.com
*.workwithtape22.com
www776ks.com
*.www776ks.com
Other domains in certificate