Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=6067.win
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 15, 2026
Valid Until
July 14, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6B:03:56:28:AB:E4:AC:7C:04:34:E4:11:29:8F:F2:AF:2F:AA:5D:B8:15:54:04:C2:9A:F7:F0:2E:4C:48:A8:13
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
hostingsolution24.com
*.hostingsolution24.com
6067.win
*.6067.win
6068.win
*.6068.win
60735.blog
*.60735.blog
743hh8.cfd
*.743hh8.cfd
764hh8.cfd
*.764hh8.cfd
abc86.com
*.abc86.com
akitoken.com
*.akitoken.com
artelisse.com
*.artelisse.com
atlanticbloom.com
*.atlanticbloom.com
champaranhelp.xyz
*.champaranhelp.xyz
consultingarmourintel.com
*.consultingarmourintel.com
crownslotsno.com
*.crownslotsno.com
daycare-hirring-2025.sbs
*.daycare-hirring-2025.sbs
doctora2a.com
*.doctora2a.com
dynamiclearrapid.com
*.dynamiclearrapid.com
globalenvelopes.com
*.globalenvelopes.com
gondevelopertechnology.com
*.gondevelopertechnology.com
hktb.net.cn
*.hktb.net.cn
horseshowcase.com
*.horseshowcase.com
hotwin137.net
*.hotwin137.net
hotwin137.org
*.hotwin137.org
hotwin188.org
*.hotwin188.org
hyperstrategy22.info
*.hyperstrategy22.info
innoluxity.com
*.innoluxity.com
ippon.pro
*.ippon.pro
jmdigitalfaceless.com
*.jmdigitalfaceless.com
jobsgpt.dev
*.jobsgpt.dev
labjovem.pt
*.labjovem.pt
labsklick.com
*.labsklick.com
lattice365.com
*.lattice365.com
leartkrasniqi.com
*.leartkrasniqi.com
legacyaudit.com
*.legacyaudit.com
legacyscore51.info
*.legacyscore51.info
loyalfuture.com
*.loyalfuture.com
madeoutsideteam.net
*.madeoutsideteam.net
maisondelapolonia.com
*.maisondelapolonia.com
md-cars-2192f394.sbs
*.md-cars-2192f394.sbs
mobilc.network
*.mobilc.network
mobliq.info
*.mobliq.info
osaka-beauty-89111.click
*.osaka-beauty-89111.click
peluit.com
*.peluit.com
pokertokens.quest
*.pokertokens.quest
procurelogix.one
*.procurelogix.one
pszsdexaqsfuk9o.com
*.pszsdexaqsfuk9o.com
Other domains in certificate