Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ukgu.shop
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 13, 2026
Valid Until
August 11, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D4:F3:ED:DE:13:34:DA:56:B1:53:2F:5C:67:74:4E:5B:8E:10:8C:F4:45:C1:EA:A4:A7:60:2B:C7:5B:5C:3E:84
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
84 domains
ggpc.me
*.ggpc.me
*.ww17.ggpc.me
activetechnologies.us
*.activetechnologies.us
*.random.activetechnologies.us
*.selfhomicide.activetechnologies.us
*.ww25.activetechnologies.us
*.5f5iqg.dabong666.com
*.aa6888b8-7df4-49a7-8e66-b5ff82ae3605.dabong666.com
*.admin.dabong666.com
dabong666.com
*.dabong666.com
*.demo.dabong666.com
*.dev.dabong666.com
*.hostmaster.dabong666.com
*.members.dabong666.com
*.test.dabong666.com
*.www.dabong666.com
*.a.fetchasquadsoffice.com
*.app.fetchasquadsoffice.com
*.demo.fetchasquadsoffice.com
*.dev.fetchasquadsoffice.com
fetchasquadsoffice.com
*.fetchasquadsoffice.com
*.iqfkqrd.fetchasquadsoffice.com
*.rds.fetchasquadsoffice.com
*.remote.fetchasquadsoffice.com
*.test.fetchasquadsoffice.com
fourneau-tuyau.com
*.fourneau-tuyau.com
*.ww16.fourneau-tuyau.com
*.ww17.fourneau-tuyau.com
*.ww25.fourneau-tuyau.com
*.www.fourneau-tuyau.com
*.32.instantotp.pro
instantotp.pro
*.instantotp.pro
javrabbits.com
*.javrabbits.com
*.kr.javrabbits.com
lojashopsexpres.site
*.lojashopsexpres.site
o8a5ee.top
*.o8a5ee.top
p4-hdailian78.com
*.p4-hdailian78.com
*.saha-lobby-prod-bgsp.p4-hdailian78.com
pay-lnfo466.shop
*.pay-lnfo466.shop
*.32.pglg1x.vip
pglg1x.vip
*.pglg1x.vip
*.ad.reditt.com
*.corp.reditt.com
*.i.reditt.com
*.iama.reditt.com
*.indianews.reditt.com
*.old.reditt.com
reditt.com
*.reditt.com
*.wh.reditt.com
*.ww.reditt.com
*.ww16.reditt.com
*.ww17.reditt.com
*.ww25.reditt.com
*.www.reditt.com
ukgu.shop
*.ukgu.shop
*.wildcard.ukgu.shop
*.official.usmilitaryvacation.org
usmilitaryvacation.org
*.usmilitaryvacation.org
xmlarmyknife.com
*.xmlarmyknife.com
*.old.yoursports.io
*.superset-dev.yoursports.io
*.test.yoursports.io
*.ww25.yoursports.io
yoursports.io
*.yoursports.io
*.ww38.zdravkatopret.click
zdravkatopret.click
*.zdravkatopret.click
Other domains in certificate