Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=miningbnb.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 17, 2026
Valid Until
July 16, 2026
35 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
38:E8:55:49:BA:B4:9E:CF:20:20:B2:9D:A2:4A:47:3C:D4:E9:A6:11:A7:BB:8D:79:D6:17:24:8E:2F:46:FF:AF
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
65 domains
gmauk.com
*.gmauk.com
*.comw25.gmauk.com
*.gmailwww.gmauk.com
asianlawyer.com.au
*.asianlawyer.com.au
autamarkt.de
*.autamarkt.de
dakotan.net
*.dakotan.net
gardeninggiftcard.co.uk
*.gardeninggiftcard.co.uk
guemuru.com
*.guemuru.com
*.wap.guemuru.com
*.ww55.guemuru.com
guenstige-onlinekredite.de
*.guenstige-onlinekredite.de
*.ww16.guenstige-onlinekredite.de
gymnazium.sk
*.gymnazium.sk
matiretube.com
*.matiretube.com
medictatic.com
*.medictatic.com
*.mx2.medictatic.com
*.random.medictatic.com
*.shanahan.medictatic.com
*.towne.medictatic.com
miningbnb.co
*.miningbnb.co
*.ww25.miningbnb.co
*.ww38.miningbnb.co
myteen.cc
*.myteen.cc
*.vip.myteen.cc
redandcotton.com
*.redandcotton.com
redrof.com
*.redrof.com
roodeberg.de
*.roodeberg.de
rootseeker.com
*.rootseeker.com
rtpgarasigame.site
*.rtpgarasigame.site
*.webmail.rtpgarasigame.site
*.www.rtpgarasigame.site
*.community.russian.com.au
russian.com.au
*.russian.com.au
saeb.es
*.saeb.es
skinmoisturizer.com.au
*.skinmoisturizer.com.au
timenow.net
*.timenow.net
tubotenant.com
*.tubotenant.com
vifeed.com
*.vifeed.com
xn--fremdwrte-57a.de
*.xn--fremdwrte-57a.de
xn--mnzhuser-3za0v.de
*.xn--mnzhuser-3za0v.de
Other domains in certificate