Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=appszone.vip
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 08, 2026
Valid Until
April 08, 2026
55 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
42:27:DC:69:24:8E:B4:E9:1B:DA:93:08:BF:6B:27:8E:60:0E:CE:2C:C4:B9:0B:EA:34:9F:21:C8:CE:12:8E:4C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
salisburync.com
*.salisburync.com
*.gate.salisburync.com
*.ww10.salisburync.com
183sarawak.com
*.183sarawak.com
appszone.vip
*.appszone.vip
artandjakes.com
*.artandjakes.com
bamoun.com
*.bamoun.com
bentyl.com
*.bentyl.com
bestpuppies.com
*.bestpuppies.com
*.ww38.bestpuppies.com
calliejackshop.com
*.calliejackshop.com
*.pay.calliejackshop.com
customerneeds.com
*.customerneeds.com
discohit.com
*.discohit.com
erhoehte-leberwerte.de
*.erhoehte-leberwerte.de
*.dns.erieinsirance.com
erieinsirance.com
*.erieinsirance.com
*.mx7.erieinsirance.com
*.random.erieinsirance.com
hone-158.com
*.hone-158.com
huntingvictoria.com.au
*.huntingvictoria.com.au
*.random.huntingvictoria.com.au
*.webmail.huntingvictoria.com.au
*.ww16.huntingvictoria.com.au
*.www.huntingvictoria.com.au
iroboot.com
*.iroboot.com
jhonnyromero.co
*.jhonnyromero.co
kawabayashiteam24.xyz
*.kawabayashiteam24.xyz
*.alpha.knowledgeworker.blog
*.api.knowledgeworker.blog
knowledgeworker.blog
*.knowledgeworker.blog
*.random.knowledgeworker.blog
*.ww25.knowledgeworker.blog
*.www.knowledgeworker.blog
matromonio.com
*.matromonio.com
mp3skull.app
*.mp3skull.app
*.mail.newsykeeda.com
newsykeeda.com
*.newsykeeda.com
*.usa.newsykeeda.com
*.www.newsykeeda.com
nyz.co
*.nyz.co
options1.com
*.options1.com
persianconnections.com
*.persianconnections.com
quadsgoddess.click
*.quadsgoddess.click
receber-sms.cc
*.receber-sms.cc
*.ww16.receber-sms.cc
*.ww38.receber-sms.cc
shecterguitars.com
*.shecterguitars.com
skybouncer.com
*.skybouncer.com
*.app.soclaiegj.xyz
*.d.soclaiegj.xyz
soclaiegj.xyz
*.soclaiegj.xyz
*.wildcard.soclaiegj.xyz
*.ww25.soclaiegj.xyz
*.www.soclaiegj.xyz
southbroward.com
*.southbroward.com
towerhomes.com
*.towerhomes.com
vegamovies3.top
*.vegamovies3.top
Other domains in certificate