Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=39957.co
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 14, 2026
Valid Until
August 12, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:A9:42:ED:39:B3:3C:55:44:49:F4:C9:1D:59:94:9F:35:3B:EB:D1:E9:30:A1:95:65:B0:86:8A:53:A8:2E:7B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
holosquare.com
*.holosquare.com
39957.co
*.39957.co
683752.co
*.683752.co
836925a2.buzz
*.836925a2.buzz
86483.loan
*.86483.loan
9826.pw
*.9826.pw
advvaytech.com
*.advvaytech.com
analyzepix.click
*.analyzepix.click
arepair.co
*.arepair.co
beach-holidays-mu7g.click
*.beach-holidays-mu7g.click
cloth-men.com
*.cloth-men.com
edconsultingtech.com
*.edconsultingtech.com
f37f.cyou
*.f37f.cyou
forapply-needed-apply-welding-welders411.sbs
*.forapply-needed-apply-welding-welders411.sbs
formhelpr.com
*.formhelpr.com
gossipgalor.live
*.gossipgalor.live
h0lhpm.top
*.h0lhpm.top
intenexswichonline.org
*.intenexswichonline.org
jnanaseva.co.in
*.jnanaseva.co.in
*.server.jnanaseva.co.in
marketsoutlet.shop
*.marketsoutlet.shop
medicopg.co
*.medicopg.co
meuenem2025.site
*.meuenem2025.site
micronlushpmu.com
*.micronlushpmu.com
mightymangomachine.com
*.mightymangomachine.com
o128i4ob.xyz
*.o128i4ob.xyz
o4igt3.top
*.o4igt3.top
rolled-metal-277455322.click
*.rolled-metal-277455322.click
romano-adel.art
*.romano-adel.art
saintstudio6.xyz
*.saintstudio6.xyz
salesboostly.com
*.salesboostly.com
scoqfymsot.xyz
*.scoqfymsot.xyz
seedoflove.org
*.seedoflove.org
shmoma17.com
*.shmoma17.com
sportsxz.fun
*.sportsxz.fun
stabilityvacations.xyz
*.stabilityvacations.xyz
stellarselm.com
*.stellarselm.com
strikeleads.com
*.strikeleads.com
taxconsult.click
*.taxconsult.click
thakuramgai.com
*.thakuramgai.com
traveltreasurehub.live
*.traveltreasurehub.live
tztpfhy592.vip
*.tztpfhy592.vip
wwwj92if.com
*.wwwj92if.com
xn--1jro2c70b1uo5m9yg606i.tel
*.xn--1jro2c70b1uo5m9yg606i.tel
ylm2nno.cc
*.ylm2nno.cc
Other domains in certificate