Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=01536.lease
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 16, 2026
Valid Until
July 15, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DC:AC:58:CA:20:91:1D:4B:86:EC:58:12:0B:61:07:51:AB:B6:B8:13:4D:B6:AD:6C:B9:C6:BA:66:55:C4:5A:D7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
hlzb.app
*.hlzb.app
01536.lease
*.01536.lease
02234.xyz
*.02234.xyz
15561.bio
*.15561.bio
17cgcg1.fun
*.17cgcg1.fun
18659.blog
*.18659.blog
202aaa035.top
*.202aaa035.top
202aaa038.top
*.202aaa038.top
202aaa041.top
*.202aaa041.top
202ccc026.top
*.202ccc026.top
202ccc028.top
*.202ccc028.top
202ccc034.top
*.202ccc034.top
202ccc038.top
*.202ccc038.top
202ccc039.top
*.202ccc039.top
222591jj.com
*.222591jj.com
24349.bio
*.24349.bio
24680.town
*.24680.town
25393.town
*.25393.town
26321.loan
*.26321.loan
26328.loan
*.26328.loan
governmentfraternity.com
*.governmentfraternity.com
grasrobotics.com
*.grasrobotics.com
grokaiprime.com
*.grokaiprime.com
growthvoyager.info
*.growthvoyager.info
happyfamilywellness.com
*.happyfamilywellness.com
haptiks.com
*.haptiks.com
honestsysadmin.com
*.honestsysadmin.com
infinimal.com
*.infinimal.com
intimate.so
*.intimate.so
istanbulbayanara.info
*.istanbulbayanara.info
jafapropertysolutions.com
*.jafapropertysolutions.com
k10hvz.cyou
*.k10hvz.cyou
kibakusacarrental.com
*.kibakusacarrental.com
klick-memories.com
*.klick-memories.com
tuxvrh.cyou
*.tuxvrh.cyou
u68a.cyou
*.u68a.cyou
warehouse-services-near-me.sbs
*.warehouse-services-near-me.sbs
wearenube-agency.com
*.wearenube-agency.com
xn--kcrw9b.com
*.xn--kcrw9b.com
xn--kwrx2he60c.com
*.xn--kwrx2he60c.com
xn--logopdie-4za.net
*.xn--logopdie-4za.net
xn--v3ci5bj2e.com
*.xn--v3ci5bj2e.com
xpj3656.top
*.xpj3656.top
yfyfd.loans
*.yfyfd.loans
yqn0mk.cyou
*.yqn0mk.cyou
Other domains in certificate