Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=wwwchurchschickenfeedback.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 27, 2026
Valid Until
July 26, 2026
38 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
67:9E:7A:6E:BB:D3:AD:D5:5F:46:61:18:E3:84:E6:BA:CB:BB:4D:74:CD:E1:64:37:31:59:6A:EA:4F:07:86:F4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
82 domains
kopro.click
*.kopro.click
100token.com
*.100token.com
19jip.com
*.19jip.com
202ddd197.top
*.202ddd197.top
327865.im
*.327865.im
38502.center
*.38502.center
3mfzjq3gbc.world
*.3mfzjq3gbc.world
41980.one
*.41980.one
4605.org
*.4605.org
5vbcd2.cyou
*.5vbcd2.cyou
60889.wang
*.60889.wang
63909.sx
*.63909.sx
83417.company
*.83417.company
83767.center
*.83767.center
87257.one
*.87257.one
872984.cc
*.872984.cc
8h-8h-p06c6.sbs
*.8h-8h-p06c6.sbs
auto-mechanic-courses-48583.click
*.auto-mechanic-courses-48583.click
cosmorealm409.shop
*.cosmorealm409.shop
dsnt.org
*.dsnt.org
fitnessblueprintpro.run
*.fitnessblueprintpro.run
gibraltargenealogy.com
*.gibraltargenealogy.com
*.gitlab.gibraltargenealogy.com
*.secure.gibraltargenealogy.com
*.sitemap.gibraltargenealogy.com
*.test.gibraltargenealogy.com
jewellery-store-n1.sbs
*.jewellery-store-n1.sbs
johnnyvods.shop
*.johnnyvods.shop
kaihn.top
*.kaihn.top
nitron.com.cn
*.nitron.com.cn
oatzy.agency
*.oatzy.agency
polandgamenhol.com
*.polandgamenhol.com
*.hostmaster.tescoloans.com
tescoloans.com
*.tescoloans.com
*.ww62.tescoloans.com
*.ww92.tescoloans.com
*.www.tescoloans.com
tkxu975.cc
*.tkxu975.cc
tlc.beauty
*.tlc.beauty
unityfidelity.beauty
*.unityfidelity.beauty
upliftventureway.com
*.upliftventureway.com
ww888betcasino.club
*.ww888betcasino.club
wwwchurchschickenfeedback.com
*.wwwchurchschickenfeedback.com
xztlsw.top
*.xztlsw.top
z2008x.top
*.z2008x.top
Other domains in certificate