Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=12113.locker
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
January 31, 2026
Valid Until
May 01, 2026
75 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:CF:1D:63:CF:79:91:3B:0B:34:70:91:5E:03:E4:68:2F:FB:BF:71:3E:91:C5:A8:F1:91:2C:81:90:75:BA:46
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
gunraj.com
*.gunraj.com
12113.locker
*.12113.locker
12b85802db59959f.com
*.12b85802db59959f.com
4spin.casino
*.4spin.casino
79374.locker
*.79374.locker
7republika.cz
*.7republika.cz
9915cow.com
*.9915cow.com
99linksfortc.com
*.99linksfortc.com
aaca.one
*.aaca.one
americanstoys.com
*.americanstoys.com
aneral.com
*.aneral.com
asia77live.net
*.asia77live.net
b15de00c3ccfd5b2.com
*.b15de00c3ccfd5b2.com
basement-waterproofing-ca4-dp.click
*.basement-waterproofing-ca4-dp.click
blogspot.tv
*.blogspot.tv
boomerangslotsgreece.com
*.boomerangslotsgreece.com
car-deals-70275.click
*.car-deals-70275.click
car-insurance-153002.click
*.car-insurance-153002.click
chinacustomsbrokerage.com
*.chinacustomsbrokerage.com
cleaning-jobs-ca9-dp.click
*.cleaning-jobs-ca9-dp.click
conditioning-jobs-ca1-dp.click
*.conditioning-jobs-ca1-dp.click
d18joms.top
*.d18joms.top
digital-marketing-tools.buzz
*.digital-marketing-tools.buzz
dirtmind.com
*.dirtmind.com
dk7h60f.top
*.dk7h60f.top
domainsguide.com.au
*.domainsguide.com.au
eiqkzj.pro
*.eiqkzj.pro
english-lotto.com
*.english-lotto.com
environmental-containment-unit.click
*.environmental-containment-unit.click
espacoweb.com
*.espacoweb.com
etopautos.com
*.etopautos.com
experiencetravelmagic.live
*.experiencetravelmagic.live
forge.hu
*.forge.hu
gaitravel.app
*.gaitravel.app
grouptoto.work
*.grouptoto.work
gunter-weissgerber.de
*.gunter-weissgerber.de
gykijl.pro
*.gykijl.pro
home-renovation-companies.click
*.home-renovation-companies.click
houseandgardentips.com
*.houseandgardentips.com
hpsmar.com
*.hpsmar.com
jmgxt.academy
*.jmgxt.academy
jqlkbd.pro
*.jqlkbd.pro
jtygx.academy
*.jtygx.academy
kes14.top
*.kes14.top
Other domains in certificate