Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=topgold.online
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
January 31, 2026
Valid Until
May 01, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
52:DE:E5:F2:AC:9B:87:65:09:40:B5:E7:DE:35:0C:A5:D2:99:9D:8B:8A:B7:63:07:B5:00:55:50:EB:98:E4:96
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
k3s.chat
*.k3s.chat
bachelorsdegreeonline.net
*.bachelorsdegreeonline.net
cocaine.to
*.cocaine.to
csqrnem176.vip
*.csqrnem176.vip
cuplanetbola.xyz
*.cuplanetbola.xyz
hbrdp.net
*.hbrdp.net
headhunters-dubai-770222292.click
*.headhunters-dubai-770222292.click
homestylehub.site
*.homestylehub.site
htrbv.gdn
*.htrbv.gdn
humilitytakescourage.com
*.humilitytakescourage.com
i-gaming.io
*.i-gaming.io
j545.co
*.j545.co
k-drama.cam
*.k-drama.cam
l0ov.com
*.l0ov.com
l0v1.com
*.l0v1.com
logflix777.com
*.logflix777.com
loterias.fo
*.loterias.fo
mediterra.online
*.mediterra.online
online-brokers-870777662.click
*.online-brokers-870777662.click
osiptel.help
*.osiptel.help
pb4xw053.xyz
*.pb4xw053.xyz
periscopeagency.com
*.periscopeagency.com
photoarting.com
*.photoarting.com
polydatingsites.org
*.polydatingsites.org
r8i2t37.cyou
*.r8i2t37.cyou
ramen-betz.cfd
*.ramen-betz.cfd
rhesxp109w.life
*.rhesxp109w.life
sambenedettesecalcio.online
*.sambenedettesecalcio.online
shopping.golf
*.shopping.golf
stcrenq.cyou
*.stcrenq.cyou
sunnyfintech.com
*.sunnyfintech.com
tnbnaw.vip
*.tnbnaw.vip
topg99.com
*.topg99.com
*.ww38.topg99.com
*.api.topgold.online
*.m.topgold.online
*.staging.topgold.online
topgold.online
*.topgold.online
*.ww25.topgold.online
*.ww38.topgold.online
trymarkhub.com
*.trymarkhub.com
v15wbg2.cyou
*.v15wbg2.cyou
veiculo.com
*.veiculo.com
vertexwealthpartners.org
*.vertexwealthpartners.org
vinniesoil.com
*.vinniesoil.com
xn--2ry58lzp2a1ka.com
*.xn--2ry58lzp2a1ka.com
yourcareerdeveloper.site
*.yourcareerdeveloper.site
yoyoground.cyou
*.yoyoground.cyou
Other domains in certificate