Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=antiquecarbuyers.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 10, 2026
Valid Until
April 10, 2026
49 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
C4:A2:A4:7E:FD:F0:E6:F2:65:91:E9:90:77:40:20:49:0A:7D:89:B4:A8:A7:EC:AD:48:F6:89:2C:8B:43:A4:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ingmad.com
*.ingmad.com
*.any.ingmad.com
*.button.ingmad.com
*.download.ingmad.com
2tone.live
*.2tone.live
*.git.2tone.live
anastasiia.live
*.anastasiia.live
*.ww38.anastasiia.live
antiquecarbuyers.com
*.antiquecarbuyers.com
*.git.antiquecarbuyers.com
*.gitlab.antiquecarbuyers.com
*.autodiscover.bamboocanvas.org
bamboocanvas.org
*.bamboocanvas.org
*.cpanel.bamboocanvas.org
*.cpcalendars.bamboocanvas.org
*.cpcontacts.bamboocanvas.org
*.mail.bamboocanvas.org
*.webdisk.bamboocanvas.org
*.www.bamboocanvas.org
certifiedpreownedautoleasing.com
*.certifiedpreownedautoleasing.com
*.random.certifiedpreownedautoleasing.com
conyui.org
*.conyui.org
*.ww25.conyui.org
doorlock.com.au
*.doorlock.com.au
*.api-dev.enot.fun
*.app.enot.fun
enot.fun
*.enot.fun
*.sitemaps.enot.fun
guerrilla.uk
*.guerrilla.uk
*.mx.guerrilla.uk
hentai-az.com
*.hentai-az.com
*.webdisk.hentai-az.com
*.ww25.hentai-az.com
*.mx.osteriadegliarchivieste.com
osteriadegliarchivieste.com
*.osteriadegliarchivieste.com
*.ww25.osteriadegliarchivieste.com
*.mta-sts.pawastreams.info
pawastreams.info
*.pawastreams.info
*.reddit.pawastreams.info
*.irc.place2chat.com
place2chat.com
*.place2chat.com
shopdashonline.store
*.shopdashonline.store
*.ww25.shopdashonline.store
southcentral.store
*.southcentral.store
*.www.southcentral.store
*.mail.tuonglap.com
tuonglap.com
*.tuonglap.com
*.ava.u9zx.com
*.dean.u9zx.com
*.dina.u9zx.com
*.enzo.u9zx.com
*.kiyan.u9zx.com
*.lena.u9zx.com
*.lily.u9zx.com
*.max.u9zx.com
*.nina.u9zx.com
*.remy.u9zx.com
*.ruby.u9zx.com
*.store.u9zx.com
u9zx.com
*.u9zx.com
*.zaren.u9zx.com
*.zeke.u9zx.com
*.zelie.u9zx.com
*.zella.u9zx.com
*.zevon.u9zx.com
*.zilah.u9zx.com
*.zivah.u9zx.com
*.zola.u9zx.com
*.zowie.u9zx.com
venusbeautylaser.uk
*.venusbeautylaser.uk
*.www.venusbeautylaser.uk
Other domains in certificate