Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=peplefinders.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
March 06, 2026
Valid Until
June 04, 2026
40 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
95:13:D8:3B:1E:7A:B0:04:61:DB:CE:2A:80:D6:3F:97:0F:90:8C:BC:0D:23:3E:6B:72:70:88:61:E4:84:6E:3E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
72 domains
sciencemag.co
*.sciencemag.co
*.he.sciencemag.co
88vnbjprizes.com
*.88vnbjprizes.com
*.1p.a3z.tech
a3z.tech
*.a3z.tech
*.cpanel.a3z.tech
*.mail.a3z.tech
*.whm.a3z.tech
alfinjjan.com
*.alfinjjan.com
*.ww25.alfinjjan.com
amacongfae.info
*.amacongfae.info
*.security-device.amacongfae.info
*.webdisk.amacongfae.info
bloxgames.us
*.bloxgames.us
*.ww25.bloxgames.us
chlohd.com
*.chlohd.com
*.magento.chlohd.com
exnes.uk
*.exnes.uk
*.uk.exnes.uk
*.ww25.exnes.uk
*.autoconfig.firstinstallmac.club
*.autodiscover.firstinstallmac.club
*.c.firstinstallmac.club
*.dashboard.firstinstallmac.club
*.docs.firstinstallmac.club
firstinstallmac.club
*.firstinstallmac.club
*.i.firstinstallmac.club
*.m.firstinstallmac.club
*.report.firstinstallmac.club
*.superset.firstinstallmac.club
*.t.firstinstallmac.club
*.1965993c-fb64-400e-bf07-32722385c726.fredagain.live
fredagain.live
*.fredagain.live
hundefutter.bio
*.hundefutter.bio
*.cn.investiing.com
investiing.com
*.investiing.com
limelushboutique.com
*.limelushboutique.com
*.ww16.limelushboutique.com
motorcyclejacket.com.au
*.motorcyclejacket.com.au
*.ww25.motorcyclejacket.com.au
*.mail7.nbee.es
*.mail8.nbee.es
nbee.es
*.nbee.es
*.pkgs.nbee.es
*.projects.nbee.es
ncr.life
*.ncr.life
peplefinders.com
*.peplefinders.com
*.mx1.poxw.com
poxw.com
*.poxw.com
routed.au
*.routed.au
*.b68e87fdd42d.yfu7.shop
yfu7.shop
*.yfu7.shop
Other domains in certificate