Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=wowapis.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 14, 2026
Valid Until
July 13, 2026
56 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
90:A6:08:5D:7D:ED:46:00:D7:B3:75:CC:AD:75:04:12:5F:44:8F:85:8A:30:55:95:32:BA:FB:90:C7:59:16:3C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
iswd.cn
*.iswd.cn
05249.sx
*.05249.sx
11656.one
*.11656.one
123448.co
*.123448.co
16254.bet
*.16254.bet
16826.koeln
*.16826.koeln
1kingdom357.com
*.1kingdom357.com
inteladvisor.com
*.inteladvisor.com
juniorparty.com
*.juniorparty.com
premolo.com
*.premolo.com
*.promo.premolo.com
shawarmahouse.com
*.shawarmahouse.com
skilloria.com
*.skilloria.com
skyfetch.com
*.skyfetch.com
slowstitching.com
*.slowstitching.com
solartaxcredits.com
*.solartaxcredits.com
spll.co.in
*.spll.co.in
subjectmatterexpert.com
*.subjectmatterexpert.com
sublimeclinic.com
*.sublimeclinic.com
suparich.com
*.suparich.com
sustainableafrica.com
*.sustainableafrica.com
swahilicoast.com
*.swahilicoast.com
swiftcartz.com
*.swiftcartz.com
synapsesphere.com
*.synapsesphere.com
tavistocksquare.com
*.tavistocksquare.com
tazaakhabar.com
*.tazaakhabar.com
teatimeemporium.com
*.teatimeemporium.com
tellurians.com
*.tellurians.com
tickerspace.com
*.tickerspace.com
tigervipvpnra.xyz
*.tigervipvpnra.xyz
topstrategies.com
*.topstrategies.com
trazzy.com
*.trazzy.com
typhu88.quest
*.typhu88.quest
vastmcp.com
*.vastmcp.com
vistabond.com
*.vistabond.com
vntriptms.com
*.vntriptms.com
wackfuck.com
*.wackfuck.com
weathegence.com
*.weathegence.com
web-77.com
*.web-77.com
webhookr.com
*.webhookr.com
woodenmouldings.com
*.woodenmouldings.com
wooflow.com
*.wooflow.com
wowapis.com
*.wowapis.com
xpuswarm.com
*.xpuswarm.com
znkpi.today
*.znkpi.today
Other domains in certificate