Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=03962.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 28, 2026
Valid Until
August 26, 2026
64 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
66:B4:C2:30:2E:6C:AC:4A:BF:D4:64:10:B5:5C:80:17:2F:0F:B0:0D:5B:48:48:57:A4:64:19:E5:99:AF:25:62
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
faresnipers.com
*.faresnipers.com
03962.one
*.03962.one
47731.blog
*.47731.blog
50709.town
*.50709.town
50767.blog
*.50767.blog
546555q.cc
*.546555q.cc
56328.blog
*.56328.blog
63658.club
*.63658.club
63703.my
*.63703.my
73151.town
*.73151.town
75009.my
*.75009.my
7559b.co
*.7559b.co
7t2t9.lol
*.7t2t9.lol
82554.co
*.82554.co
95253.club
*.95253.club
aqtaxfile.com
*.aqtaxfile.com
aszxw.loan
*.aszxw.loan
casino-vulcan14.cfd
*.casino-vulcan14.cfd
echedate.xyz
*.echedate.xyz
engineershopz.com
*.engineershopz.com
enhancedtravelroute.live
*.enhancedtravelroute.live
fiedl.com
*.fiedl.com
finual.com
*.finual.com
fixcreditplusllc.com
*.fixcreditplusllc.com
fuckthiscunt.com
*.fuckthiscunt.com
gccdns.net
*.gccdns.net
getrich-lkg82.sbs
*.getrich-lkg82.sbs
golfpronet.com
*.golfpronet.com
j237h.lol
*.j237h.lol
mont-erry-715130366.click
*.mont-erry-715130366.click
mysticmaster321.shop
*.mysticmaster321.shop
neoguardian541.top
*.neoguardian541.top
neoninja325.top
*.neoninja325.top
neorace844.info
*.neorace844.info
neosi.com
*.neosi.com
nerwcpk592.vip
*.nerwcpk592.vip
nettsolutionsppclabs.com
*.nettsolutionsppclabs.com
nettsolutionsppcnetwork.com
*.nettsolutionsppcnetwork.com
neurology-medical-814250399.click
*.neurology-medical-814250399.click
pacificcommercialservices.com
*.pacificcommercialservices.com
skin-rejuvenation-5c4k9n3g2n1.sbs
*.skin-rejuvenation-5c4k9n3g2n1.sbs
tamilmv.cam
*.tamilmv.cam
the-festival.info
*.the-festival.info
w13724703.com
*.w13724703.com
wisdomtravelline.xyz
*.wisdomtravelline.xyz
Other domains in certificate