Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=xxav2232.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 13, 2026
Valid Until
May 14, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
EB:0C:7D:19:E1:38:79:FC:86:2F:C5:2E:23:CC:7B:2D:C6:25:93:85:8C:AC:F3:F3:20:B4:74:7D:C0:1B:D6:AF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
flashecore.com
*.flashecore.com
*.ww38.flashecore.com
11113366xx7.shop
*.11113366xx7.shop
*.com.11113366xx7.shop
44494.bet
*.44494.bet
applab-jp.com
*.applab-jp.com
beautyproducts.com.au
*.beautyproducts.com.au
*.random.beautyproducts.com.au
ccsc-ms.org
*.ccsc-ms.org
*.bi.compramososeucarro.biz
compramososeucarro.biz
*.compramososeucarro.biz
*.data.compramososeucarro.biz
*.random.compramososeucarro.biz
*.superset.compramososeucarro.biz
*.ww38.compramososeucarro.biz
*.api.dags.it
dags.it
*.dags.it
*.www.dags.it
eimo.life
*.eimo.life
*.haisan.hoangcong.com
hoangcong.com
*.hoangcong.com
*.1.hunterwines.com.au
hunterwines.com.au
*.hunterwines.com.au
*.api.illegals.cyou
illegals.cyou
*.illegals.cyou
*.hostmaster.jamba.online
jamba.online
*.jamba.online
just-tv.com
*.just-tv.com
*.webvpn.just-tv.com
*.autodiscover.magautogarage.com
magautogarage.com
*.magautogarage.com
*.analytics.masato.it
*.analyze.masato.it
*.backend.masato.it
masato.it
*.masato.it
*.remote.masato.it
*.admin.mimatsu.com
*.assets.mimatsu.com
*.blog.mimatsu.com
*.dev.mimatsu.com
*.hmthmshop.mimatsu.com
mimatsu.com
*.mimatsu.com
*.shop.mimatsu.com
*.teste.mimatsu.com
*.vps.mimatsu.com
*.ww16.mimatsu.com
*.admin.nikko.it
*.intel.nikko.it
nikko.it
*.nikko.it
*.prod.nikko.it
*.go.punchtv.net
*.mail-it-to-me.punchtv.net
*.my.punchtv.net
*.punch99.punchtv.net
punchtv.net
*.punchtv.net
*.tv.punchtv.net
*.eposta.redhot.it
redhot.it
*.redhot.it
*.supersets.redhot.it
sedationdds.com
*.sedationdds.com
*.demo.shoeslob.com
shoeslob.com
*.shoeslob.com
sodabar.com.au
*.sodabar.com.au
*.ww84.xxav2232.com
xxav2232.com
*.xxav2232.com
Other domains in certificate