Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=12573.academy
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 18, 2026
Valid Until
May 19, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
44:B7:00:13:52:CB:30:C0:60:C2:4D:98:33:B6:02:9F:86:39:E2:FA:65:10:F0:D8:4A:DB:C8:8D:3D:02:84:C4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
royalapi.com
*.royalapi.com
12573.academy
*.12573.academy
137692.pictures
*.137692.pictures
187186.cc
*.187186.cc
2335588a.buzz
*.2335588a.buzz
23azino777.win
*.23azino777.win
268jogo.love
*.268jogo.love
328wgjm8.top
*.328wgjm8.top
65453.net
*.65453.net
900802a.buzz
*.900802a.buzz
*.900802com-pfrns.900802a.buzz
achieve.bio
*.achieve.bio
freeongames.com
*.freeongames.com
infinitetravelpaths.live
*.infinitetravelpaths.live
injury-lawyers-usa.click
*.injury-lawyers-usa.click
ipanema.bet
*.ipanema.bet
irripiscina.com
*.irripiscina.com
jkdvu.net
*.jkdvu.net
jomaproducciones.com
*.jomaproducciones.com
jun88mobi.bet
*.jun88mobi.bet
kekme.net
*.kekme.net
kepo365.one
*.kepo365.one
kxhs49.com
*.kxhs49.com
landscapingwaco.com
*.landscapingwaco.com
libbygraves.me
*.libbygraves.me
lifetome.app
*.lifetome.app
magnet44.bet
*.magnet44.bet
masterylive.com
*.masterylive.com
maxcushioning.com
*.maxcushioning.com
memorableweddingexperiences.beauty
*.memorableweddingexperiences.beauty
mercyhavenllc.com
*.mercyhavenllc.com
mezcalositos.com
*.mezcalositos.com
midamericacup.com
*.midamericacup.com
paikarimaal.com
*.paikarimaal.com
scc-epc.org
*.scc-epc.org
smacna-oc.org
*.smacna-oc.org
vcp04.com
*.vcp04.com
volvobenifits.com
*.volvobenifits.com
w6ncainiaor4d.top
*.w6ncainiaor4d.top
wi011m0v3m30.com
*.wi011m0v3m30.com
wwwballzaa.com
*.wwwballzaa.com
wwwquizlet.live
*.wwwquizlet.live
xoilacvx1.win
*.xoilacvx1.win
xoilacvxs.cc
*.xoilacvxs.cc
zontad17.org
*.zontad17.org
Other domains in certificate