Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=40069.one
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 28, 2026
Valid Until
August 26, 2026
69 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4D:7A:98:7D:8D:26:7D:3A:65:74:28:83:61:CB:6D:CE:A0:E3:23:3A:D1:CF:F9:5D:1D:4D:0B:93:72:74:64:37
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
lebenbaum.com
*.lebenbaum.com
39217.blog
*.39217.blog
40069.one
*.40069.one
462929.cc
*.462929.cc
46384.blog
*.46384.blog
46638.one
*.46638.one
568159.xyz
*.568159.xyz
77303.tv
*.77303.tv
badmensbible.com
*.badmensbible.com
biblequests.com
*.biblequests.com
bjsf.org
*.bjsf.org
blazevision205.shop
*.blazevision205.shop
canyon.news
*.canyon.news
cijjd.cc
*.cijjd.cc
cwa5sy.top
*.cwa5sy.top
d3mep6bq.world
*.d3mep6bq.world
dustinlaverick.com
*.dustinlaverick.com
eastwestruralbank.com
*.eastwestruralbank.com
elmavitrin3.monster
*.elmavitrin3.monster
elmavitrin4.monster
*.elmavitrin4.monster
fedyou.com
*.fedyou.com
fmjesd.cyou
*.fmjesd.cyou
formind.ai
*.formind.ai
hajsbcj.vip
*.hajsbcj.vip
hlzuw.work
*.hlzuw.work
humanrespectnepal.com
*.humanrespectnepal.com
ilovesipet.shop
*.ilovesipet.shop
imaginevacaydestinations.xyz
*.imaginevacaydestinations.xyz
ioyoes.top
*.ioyoes.top
joinlambdares.top
*.joinlambdares.top
kicnksksixuserok.shop
*.kicnksksixuserok.shop
lowcountryartworks.com
*.lowcountryartworks.com
migraine-treatment-en.sbs
*.migraine-treatment-en.sbs
murxeloniv.sbs
*.murxeloniv.sbs
n9f0pd.cyou
*.n9f0pd.cyou
niwqr.loan
*.niwqr.loan
reape.fun
*.reape.fun
retrorealm27.top
*.retrorealm27.top
scorelegend847.shop
*.scorelegend847.shop
sextandtrade.com
*.sextandtrade.com
theexoai.com
*.theexoai.com
thelawofficesofallanfjose.cfd
*.thelawofficesofallanfjose.cfd
thetownbrasil2025.cyou
*.thetownbrasil2025.cyou
videosme.com
*.videosme.com
zenithseeker833.top
*.zenithseeker833.top
Other domains in certificate