Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=play-to-3arn.io
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 03, 2026
Valid Until
August 01, 2026
49 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
25:F8:BC:82:6B:82:90:AC:73:5C:5C:0D:7A:A2:F6:B4:79:CD:A4:C1:7F:18:59:F1:C4:8B:85:49:42:1D:B8:E6
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
kwsf.com
*.kwsf.com
*.portal.kwsf.com
*.ww38.kwsf.com
apiquerymaker.tech
*.apiquerymaker.tech
cewekbo.com
*.cewekbo.com
*.random.cewekbo.com
chochox10.space
*.chochox10.space
*.random.chochox10.space
devkup.com
*.devkup.com
*.mail.devkup.com
*.webvpn.devkup.com
dweed.io
*.dweed.io
*.hostmaster.dweed.io
*.sitemap.dweed.io
*.sitemaps.dweed.io
*.donate-live.largebio.space
largebio.space
*.largebio.space
*.preview.largebio.space
*.support1.largebio.space
*.ww38.largebio.space
lavivatv277.online
*.lavivatv277.online
*.ww25.lavivatv277.online
*.amr.luzzatti.it
*.glw.luzzatti.it
*.kjj.luzzatti.it
luzzatti.it
*.luzzatti.it
*.mengwei.luzzatti.it
*.rdp.luzzatti.it
*.rds.luzzatti.it
*.secure.luzzatti.it
*.vpnssl.luzzatti.it
*.webmail.luzzatti.it
*.www.luzzatti.it
mini-mental-status-test.de
*.mini-mental-status-test.de
pagos-4-72col.website
*.pagos-4-72col.website
*.blog.play-to-3arn.io
*.en.play-to-3arn.io
*.home.play-to-3arn.io
*.ns1.play-to-3arn.io
play-to-3arn.io
*.play-to-3arn.io
*.smtp.play-to-3arn.io
*.staging.play-to-3arn.io
*.www.play-to-3arn.io
*.random.rusalepro-shop.online
rusalepro-shop.online
*.rusalepro-shop.online
savoury.com.au
*.savoury.com.au
shena.top
*.shena.top
*.www.shena.top
*.emv1.shibdoge.com
*.faculty.shibdoge.com
*.internal.shibdoge.com
*.katalog.shibdoge.com
*.pcstun.shibdoge.com
*.samara.shibdoge.com
*.search.shibdoge.com
*.seed.shibdoge.com
shibdoge.com
*.shibdoge.com
*.smg.shibdoge.com
*.sync.shibdoge.com
*.titan.shibdoge.com
*.triton.shibdoge.com
*.users.shibdoge.com
*.w6.shibdoge.com
*.works.shibdoge.com
*.ww38.shibdoge.com
*.yoda.shibdoge.com
toraasonmrkt.co
*.toraasonmrkt.co
tvmon01.store
*.tvmon01.store
vitalmanlife.com
*.vitalmanlife.com
*.ww38.vitalmanlife.com
Other domains in certificate