Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=00849.lgbt
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 12, 2026
Valid Until
July 11, 2026
36 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F1:14:E1:1B:F3:83:15:2C:89:0F:30:1A:18:53:5C:C3:84:93:77:EB:02:57:7B:FE:4A:F2:50:95:C3:7B:4D:54
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
kikodesigns.com
*.kikodesigns.com
00849.lgbt
*.00849.lgbt
03984.builders
*.03984.builders
100chk.com
*.100chk.com
114574.vip
*.114574.vip
15955.sbs
*.15955.sbs
18769.bet
*.18769.bet
3318223.vip
*.3318223.vip
advisrenasee.co
*.advisrenasee.co
advisrenatrue.co
*.advisrenatrue.co
advisrenatry.co
*.advisrenatry.co
advisrenayour.co
*.advisrenayour.co
asdaa.one
*.asdaa.one
aslc.me
*.aslc.me
cachemcp.com
*.cachemcp.com
gpjbvsdkvxl.cc
*.gpjbvsdkvxl.cc
h3h4.cc
*.h3h4.cc
hd61.cc
*.hd61.cc
hfun03.vip
*.hfun03.vip
hmin02.top
*.hmin02.top
hugel.studio
*.hugel.studio
hzlvmp.town
*.hzlvmp.town
injury-lawyer-62742.click
*.injury-lawyer-62742.click
lafayettestreet.com
*.lafayettestreet.com
lailalounge.com
*.lailalounge.com
legretsonia.com
*.legretsonia.com
libertyvilleinsurance.com
*.libertyvilleinsurance.com
lkpmy.cloud
*.lkpmy.cloud
mrtdd.my
*.mrtdd.my
newmindset.net
*.newmindset.net
onhys.com
*.onhys.com
phje.repair
*.phje.repair
portableroad.org
*.portableroad.org
tikkrgv.cc
*.tikkrgv.cc
usedbritishcarparts.com
*.usedbritishcarparts.com
uwsg.repair
*.uwsg.repair
v86m.cyou
*.v86m.cyou
webyfld389.icu
*.webyfld389.icu
ww2h.cc
*.ww2h.cc
wwpc.repair
*.wwpc.repair
xkxkm6.cyou
*.xkxkm6.cyou
xn--z8x.com
*.xn--z8x.com
xpkcis.cyou
*.xpkcis.cyou
xpnch.parts
*.xpnch.parts
zhi.so
*.zhi.so
Other domains in certificate