Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=diyguidemastery.live
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 14, 2026
Valid Until
August 12, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E0:B2:B8:33:69:2F:2C:BF:B2:8F:20:FA:B9:2A:CB:A7:8A:FE:B2:34:22:C3:46:C7:27:BB:D5:76:7E:C5:C8:BE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
flimbor.pro
*.flimbor.pro
81971.loan
*.81971.loan
83177.loan
*.83177.loan
autoinusrance.com
*.autoinusrance.com
business-credit-cards-5o3c.click
*.business-credit-cards-5o3c.click
ceramic-coating-4x.click
*.ceramic-coating-4x.click
cleaning-jobs-ww-1123.sbs
*.cleaning-jobs-ww-1123.sbs
diskaq.com
*.diskaq.com
diycraftershub.live
*.diycraftershub.live
diycraftkits.live
*.diycraftkits.live
diyguidemastery.live
*.diyguidemastery.live
diyingenuity.live
*.diyingenuity.live
diyprojectarena.live
*.diyprojectarena.live
efh1zrs.cc
*.efh1zrs.cc
eitopup.cfd
*.eitopup.cfd
fs372260.cc
*.fs372260.cc
fs883510.cc
*.fs883510.cc
getliftchairs.sbs
*.getliftchairs.sbs
hbz1iwkw.com
*.hbz1iwkw.com
jorlunavix.sbs
*.jorlunavix.sbs
juahe.com
*.juahe.com
juztice.com
*.juztice.com
kanlikaya.info
*.kanlikaya.info
kimigochan.com
*.kimigochan.com
leadascend.co
*.leadascend.co
luxury-watches-for-251.sbs
*.luxury-watches-for-251.sbs
luxury-watches-race-745.sbs
*.luxury-watches-race-745.sbs
luxury-watches-razor-746.sbs
*.luxury-watches-razor-746.sbs
luxury-watches-styles-670.sbs
*.luxury-watches-styles-670.sbs
luxury-watches-y-247.sbs
*.luxury-watches-y-247.sbs
melzinhodoamor.club
*.melzinhodoamor.club
mem37.icu
*.mem37.icu
opp236.cc
*.opp236.cc
optimumodysseys.live
*.optimumodysseys.live
productionyourway.com
*.productionyourway.com
security-jobs-ua-wp-12211.sbs
*.security-jobs-ua-wp-12211.sbs
senierhelpers.com
*.senierhelpers.com
textgridpoint.com
*.textgridpoint.com
tuan99.cfd
*.tuan99.cfd
visionarycareerpath.xyz
*.visionarycareerpath.xyz
x-microfiber-906654928.click
*.x-microfiber-906654928.click
xn--611a.com
*.xn--611a.com
yun253.xyz
*.yun253.xyz
zenniglasses.cm
*.zenniglasses.cm
Other domains in certificate