Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=sfzll.my
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 12, 2026
Valid Until
September 10, 2026
80 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
5E:ED:91:C0:78:D6:AA:8E:0C:7E:CD:43:A1:65:6F:B1:19:A5:08:7C:BB:43:D4:57:45:3E:B9:3E:D4:9F:56:1D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
libbraslogistics.net
*.libbraslogistics.net
02317.loan
*.02317.loan
7bci.com
*.7bci.com
adocslife.co.uk
*.adocslife.co.uk
adstolia.online
*.adstolia.online
ai-breeze.online
*.ai-breeze.online
aicardiologistmd.com
*.aicardiologistmd.com
aiemployerlaw.com
*.aiemployerlaw.com
aiethane.com
*.aiethane.com
ajdn.info
*.ajdn.info
albiproduct.com
*.albiproduct.com
amantoto1.net
*.amantoto1.net
blnktiosolutions.com
*.blnktiosolutions.com
christy90.cfd
*.christy90.cfd
cocok88.blog
*.cocok88.blog
corplawyerai.com
*.corplawyerai.com
dishujiasuqi.com
*.dishujiasuqi.com
fullmagnets.com
*.fullmagnets.com
getatomikgrowth.sbs
*.getatomikgrowth.sbs
goodfellacafe.com
*.goodfellacafe.com
h25apr16fe.top
*.h25apr16fe.top
infraredbeds.net
*.infraredbeds.net
libertycap.com
*.libertycap.com
maddenai.com
*.maddenai.com
mailburo.vip
*.mailburo.vip
makeappleredagain.com
*.makeappleredagain.com
maketheapple.com
*.maketheapple.com
makethebigappleredagain.com
*.makethebigappleredagain.com
mantul77.blog
*.mantul77.blog
mattsofroadrecovery.com
*.mattsofroadrecovery.com
mdkp3.vip
*.mdkp3.vip
peruhardware.club
*.peruhardware.club
pokerdom507.buzz
*.pokerdom507.buzz
qvxvd.club
*.qvxvd.club
realmadventure551.shop
*.realmadventure551.shop
runes.ae
*.runes.ae
running.asia
*.running.asia
sfzll.my
*.sfzll.my
sntat.com
*.sntat.com
sobreak.com
*.sobreak.com
spindorluxqe.pro
*.spindorluxqe.pro
stablecommodity.com
*.stablecommodity.com
sujin.net
*.sujin.net
Other domains in certificate