Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=3ick.net
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
76 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:6B:EA:D5:7F:00:B6:30:80:E5:09:28:F8:88:75:C8:94:E2:94:08:BC:BD:BE:09:CE:14:C9:A5:3B:AE:F2:20
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
firedupseaside.com
*.firedupseaside.com
05895.bid
*.05895.bid
282ky.cc
*.282ky.cc
2d3zyc.top
*.2d3zyc.top
3ick.net
*.3ick.net
73759.cc
*.73759.cc
899228.me
*.899228.me
a2a.marketing
*.a2a.marketing
advokatfamilierett957822.icu
*.advokatfamilierett957822.icu
agent2.app
*.agent2.app
bambi.com.mx
*.bambi.com.mx
banthochungcu.com
*.banthochungcu.com
bcomfined.com
*.bcomfined.com
bdgame.cc
*.bdgame.cc
bettingripple.com
*.bettingripple.com
blogor.org
*.blogor.org
brilliantboymedia.com
*.brilliantboymedia.com
buffalomobile.com
*.buffalomobile.com
casino-bollywood-online.in
*.casino-bollywood-online.in
cgvaksoftwarecampaign.net
*.cgvaksoftwarecampaign.net
commercialgaragedoor111573.icu
*.commercialgaragedoor111573.icu
creationjustice.info
*.creationjustice.info
cremecompany.com
*.cremecompany.com
efbdwj.academy
*.efbdwj.academy
fencenow587567.icu
*.fencenow587567.icu
first-priority.com
*.first-priority.com
helenbendis034.xyz
*.helenbendis034.xyz
holychildfaridabad.com
*.holychildfaridabad.com
iconstars.com
*.iconstars.com
jeepzine.com
*.jeepzine.com
katsubet.app
*.katsubet.app
kinemastermode.com
*.kinemastermode.com
longisland.beer
*.longisland.beer
maidexpert.com
*.maidexpert.com
mcgrawcommunications.com
*.mcgrawcommunications.com
mekahero.com
*.mekahero.com
myceramides.com
*.myceramides.com
noxtools.net
*.noxtools.net
onenightcluck.com
*.onenightcluck.com
operationlovecraft.com
*.operationlovecraft.com
partygirl.com.au
*.partygirl.com.au
play-void-outpost.xyz
*.play-void-outpost.xyz
pragma123floos.rent
*.pragma123floos.rent
q-clinic.com
*.q-clinic.com
youthloans.com
*.youthloans.com
Other domains in certificate