SSL Verification Bypassed
The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.
Reason:
Hostname Mismatch - certificate is issued for *.a0326.win918.net, *.ad.mobilephoneplan.com, *.admin.tangolive.me, *.admin.wwwkay.com, *.albanianholiday.com, *.all4yoga.eu, *.bet365.win918.net, *.bet777.win918.net, *.blog.mobilephoneplan.com, not for lb-182-217.above.com
Open
Cached
·
just now
73/100
SECURITY SCORE
Certificate Information
Subject
CN=breezemax.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
October 27, 2025
Valid Until
January 25, 2026
29 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
51:69:2F:F7:B4:0F:2F:1C:11:8D:12:AC:93:53:A0:00:F8:21:FE:A5:6E:91:2B:CF:B2:F2:73:CC:7B:03:AD:95
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
albanianholiday.com
*.albanianholiday.com
all4yoga.eu
*.all4yoga.eu
breezemax.org
*.breezemax.org
geogmap.ru
*.geogmap.ru
getiptv.live
*.getiptv.live
*.cpanel.grimoire.chat
grimoire.chat
*.grimoire.chat
*.mail.grimoire.chat
*.gladiator.kinohold.club
kinohold.club
*.kinohold.club
*.random.kinohold.club
*.s1.kinohold.club
*.s2.kinohold.club
*.video.kinohold.club
*.ww12.kinohold.club
*.www.kinohold.club
liciwang.com
*.liciwang.com
*.m.liciwang.com
*.owa.liciwang.com
*.shop.liciwang.com
*.sitemaps.liciwang.com
*.ww1.liciwang.com
*.ww12.liciwang.com
*.ww7.liciwang.com
*.ww99.liciwang.com
*.www.liciwang.com
*.ad.mobilephoneplan.com
*.blog.mobilephoneplan.com
*.charge.mobilephoneplan.com
mobilephoneplan.com
*.mobilephoneplan.com
*.temp.mobilephoneplan.com
*.admin.tangolive.me
*.mail.tangolive.me
*.sitemap.tangolive.me
tangolive.me
*.tangolive.me
*.ww1.tangolive.me
*.ww2.tangolive.me
*.ww3.tangolive.me
*.ww38.tangolive.me
*.www.tangolive.me
*.com.tickerts.online
*.es.tickerts.online
*.imap.tickerts.online
*.owa.tickerts.online
*.store.tickerts.online
tickerts.online
*.tickerts.online
*.a0326.win918.net
*.bet365.win918.net
*.bet777.win918.net
*.br.win918.net
*.csagent.win918.net
*.dev.win918.net
*.dev0101.win918.net
*.dev0201.win918.net
*.dev0501.win918.net
*.dev0801.win918.net
*.dm01.win918.net
*.dm04.win918.net
*.dmthb.win918.net
*.home.win918.net
*.mm001.win918.net
*.oebet.win918.net
*.p8.win918.net
*.royalclub.win918.net
*.th.win918.net
*.vn.win918.net
*.wangzheking.win918.net
win918.net
*.win918.net
*.ww25.win918.net
*.z8.win918.net
ww2.com.au
*.ww2.com.au
*.ww6.ww2.com.au
*.admin.wwwkay.com
*.webmail.wwwkay.com
*.ww25.wwwkay.com
wwwkay.com
*.wwwkay.com