Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=goldrate.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 27, 2026
Valid Until
July 26, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D3:DE:02:17:38:6D:3C:43:ED:B3:6D:1D:C0:C8:60:93:4F:20:26:A6:F3:EF:AA:31:C5:C3:CF:01:DE:90:31:5C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
getchatsols.com
*.getchatsols.com
157879.one
*.157879.one
25924.one
*.25924.one
36727.one
*.36727.one
38272.one
*.38272.one
39731.one
*.39731.one
42495.sx
*.42495.sx
5378695.cc
*.5378695.cc
5378698.cc
*.5378698.cc
fisherserviceslabs.com
*.fisherserviceslabs.com
futboll.live
*.futboll.live
g3fafqykhrgv8.cc
*.g3fafqykhrgv8.cc
get-around-50949.click
*.get-around-50949.click
getairfive.com
*.getairfive.com
gloom.live
*.gloom.live
goldrate.co
*.goldrate.co
*.hostmaster.goldrate.co
*.mail.goldrate.co
*.www.goldrate.co
heysynergium.com
*.heysynergium.com
holdkits.com
*.holdkits.com
hula.cc
*.hula.cc
i5.top
*.i5.top
iwoin.gdn
*.iwoin.gdn
ixvnk.work
*.ixvnk.work
j5s2q4kj.top
*.j5s2q4kj.top
j5x5b6zp.top
*.j5x5b6zp.top
j8y3t7qw.top
*.j8y3t7qw.top
j9bd9zbfz9.top
*.j9bd9zbfz9.top
joinmocyi.com
*.joinmocyi.com
k9j6w2ze.top
*.k9j6w2ze.top
kbq7782.cc
*.kbq7782.cc
kedsi.com
*.kedsi.com
kenari69bro.vip
*.kenari69bro.vip
keo4492.cc
*.keo4492.cc
kew6139.cc
*.kew6139.cc
kfa7675.cc
*.kfa7675.cc
sweetbonanzax1000.com
*.sweetbonanzax1000.com
tecsaleshop.com
*.tecsaleshop.com
tijuanajerseys.com
*.tijuanajerseys.com
tinnh.com
*.tinnh.com
triathlonproshop.com
*.triathlonproshop.com
vergeml.com
*.vergeml.com
vertexaci.com
*.vertexaci.com
vertiformer.com
*.vertiformer.com
vs3d.studio
*.vs3d.studio
Other domains in certificate