Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=focus97.click
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 11, 2026
Valid Until
April 11, 2026
44 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C0:98:C5:4F:B7:71:4E:36:C9:96:8F:F9:3B:D0:84:4D:FD:F8:CF:3A:F7:6A:7A:69:BA:51:6B:07:99:D5:45:90
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
focus97.click
*.focus97.click
*.cpanel.focus97.click
2block.io
*.2block.io
*.admin.2block.io
*.items.2block.io
*.laravel.2block.io
2lordserial.pro
*.2lordserial.pro
*.hd.2lordserial.pro
*.ww25.2lordserial.pro
49-euroticket.info
*.49-euroticket.info
*.ww38.49-euroticket.info
8088y.site
*.8088y.site
*.cpcontacts.8088y.site
ai-media.studio
*.ai-media.studio
*.mail.ai-media.studio
*.ww38.ai-media.studio
amul.life
*.amul.life
*.com.amul.life
*.gov.amul.life
*.ww38.amul.life
aquaplumbingservices.co
*.aquaplumbingservices.co
*.ww25.aquaplumbingservices.co
*.ww38.aquaplumbingservices.co
aspiconseils.com
*.aspiconseils.com
*.ww38.aspiconseils.com
cidpplasmaexchange958791.icu
*.cidpplasmaexchange958791.icu
deckcontractorsnearme969560.icu
*.deckcontractorsnearme969560.icu
dogplacement.com
*.dogplacement.com
*.m.dogplacement.com
*.ww12.dogplacement.com
*.www.dogplacement.com
emtcareertraining.com
*.emtcareertraining.com
*.jobs.emtcareertraining.com
kiwijia.work
*.kiwijia.work
*.mail.kiwijia.work
*.katherine-macklin.l0ve.pics
l0ve.pics
*.l0ve.pics
*.lashon.l0ve.pics
*.rory.l0ve.pics
*.zakai.l0ve.pics
malaymenu.org
*.malaymenu.org
*.www.malaymenu.org
*.admin.moweraxle.com
*.azure1.moweraxle.com
*.client.moweraxle.com
*.ftp.moweraxle.com
*.imap.moweraxle.com
*.login1.moweraxle.com
*.mobileconnect.moweraxle.com
moweraxle.com
*.moweraxle.com
*.mymail.moweraxle.com
*.sign.moweraxle.com
*.virtualaccess.moweraxle.com
*.vpn-perimetral.moweraxle.com
*.ww50.moweraxle.com
nellow.xyz
*.nellow.xyz
*.abanoub.nexen.tech
*.cr8.nexen.tech
nexen.tech
*.nexen.tech
*.ww25.nexen.tech
*.jcsrieapdf.nujesa.click
nujesa.click
*.nujesa.click
stormbloomapothocary.com
*.stormbloomapothocary.com
*.dev2.wpcholz.de
*.dev5.wpcholz.de
*.fenceplanner.wpcholz.de
wpcholz.de
*.wpcholz.de
*.www.wpcholz.de
Other domains in certificate