Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=scamorza.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 24, 2026
Valid Until
August 22, 2026
58 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
39:92:8D:49:71:A9:71:61:3C:A9:10:3C:20:E5:E4:01:70:E9:10:3D:4B:67:D4:56:A7:9D:AD:34:77:7D:C3:0B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
xertol.com
*.xertol.com
352378.lol
*.352378.lol
36946.club
*.36946.club
411281.xyz
*.411281.xyz
*.admin.411281.xyz
*.help.411281.xyz
*.public.411281.xyz
*.share.411281.xyz
*.web.411281.xyz
568159.me
*.568159.me
69x2939.cc
*.69x2939.cc
*.random.69x2939.cc
72555bw.cc
*.72555bw.cc
953280.lol
*.953280.lol
96034.vip
*.96034.vip
bankofamaerca.com
*.bankofamaerca.com
*.ww38.bankofamaerca.com
bj-yhw.com
*.bj-yhw.com
buddys.it
*.buddys.it
*.chart.buddys.it
*.data.buddys.it
*.flowiseai.buddys.it
*.intel.buddys.it
*.metrics.buddys.it
*.reporting.buddys.it
*.research.buddys.it
cryptocurrency13.cfd
*.cryptocurrency13.cfd
fesker.com
*.fesker.com
*.fractured.fesker.com
hbgffp.com
*.hbgffp.com
innercalmpoint.info
*.innercalmpoint.info
innersafeplace.info
*.innersafeplace.info
*.hxsnbw.iphonesp3.buzz
iphonesp3.buzz
*.iphonesp3.buzz
irdyf.town
*.irdyf.town
mmzb13.my
*.mmzb13.my
ndshbba.my
*.ndshbba.my
pg0001.my
*.pg0001.my
rajapool33.cfd
*.rajapool33.cfd
*.hostmaster.scamorza.com
*.mail.scamorza.com
*.reports.scamorza.com
scamorza.com
*.scamorza.com
*.superset.scamorza.com
*.workflow.scamorza.com
*.ww42.scamorza.com
vqdxk.town
*.vqdxk.town
vqtzt.town
*.vqtzt.town
www0218.cc
*.www0218.cc
xantiaclub.net
*.xantiaclub.net
xunjy.town
*.xunjy.town
yhamh.town
*.yhamh.town
yulpilthdi.net
*.yulpilthdi.net
yvfej.work
*.yvfej.work
zpqvbjuvbf.net
*.zpqvbjuvbf.net
Other domains in certificate