Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=stoianciprian.blog
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 27, 2026
Valid Until
August 25, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BB:4A:51:2F:4C:21:20:10:0D:58:39:B4:E4:53:A4:59:FE:89:0A:7A:46:DD:0E:6E:45:9B:CB:85:0C:2E:46:A7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
fc8.vip
*.fc8.vip
06922.agency
*.06922.agency
198907.co
*.198907.co
28890.blog
*.28890.blog
37222.mobi
*.37222.mobi
58262.my
*.58262.my
777-gala777.bet
*.777-gala777.bet
9962aa.vip
*.9962aa.vip
bombaybicycleclub.com
*.bombaybicycleclub.com
boss-au.bet
*.boss-au.bet
brightfuture2025.com
*.brightfuture2025.com
btc2money.live
*.btc2money.live
c66g.cyou
*.c66g.cyou
careertruststrategists.xyz
*.careertruststrategists.xyz
carsforsalez2eccity.sbs
*.carsforsalez2eccity.sbs
casinoirish.top
*.casinoirish.top
chicstack.com
*.chicstack.com
danz.pro
*.danz.pro
dreamninja947.top
*.dreamninja947.top
dreamworld852.top
*.dreamworld852.top
echodete.xyz
*.echodete.xyz
edithmontero.info
*.edithmontero.info
fengbiaodz.cn
*.fengbiaodz.cn
gelirgucu.net
*.gelirgucu.net
h7ghze5g.world
*.h7ghze5g.world
herinclusive.net
*.herinclusive.net
nemg.info
*.nemg.info
neuraltrust.net
*.neuraltrust.net
nfr-vault.info
*.nfr-vault.info
ngelop.monster
*.ngelop.monster
ngelop.pics
*.ngelop.pics
nichonet.com
*.nichonet.com
okyzx.my
*.okyzx.my
outfitcheck.fashion
*.outfitcheck.fashion
ovqfl.my
*.ovqfl.my
papeo-france.com
*.papeo-france.com
pfrcd.online
*.pfrcd.online
*.beclementine.stoianciprian.blog
*.comune.stoianciprian.blog
*.idog.stoianciprian.blog
*.ishow.stoianciprian.blog
*.marketingmindset.stoianciprian.blog
*.ro.stoianciprian.blog
stoianciprian.blog
*.stoianciprian.blog
*.thecollectionbureau.stoianciprian.blog
*.ww25.stoianciprian.blog
zerkalo-leon-ttjlf.xyz
*.zerkalo-leon-ttjlf.xyz
zoncute.com
*.zoncute.com
zzalw.gdn
*.zzalw.gdn
Other domains in certificate