Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nsender.io
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 10, 2026
Valid Until
August 08, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:1B:C1:73:4E:C8:9D:3A:D3:A2:AB:B4:1B:0B:3A:CB:93:50:20:57:0B:52:9E:B8:F9:53:BF:22:A5:1B:CF:37
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
lssctt82gr.com
*.lssctt82gr.com
accessorieswaala.com
*.accessorieswaala.com
anast-angel.com
*.anast-angel.com
*.32.asw.bio
asw.bio
*.asw.bio
*.pay.asw.bio
*.0u12d.baidu-iloveyou.xyz
baidu-iloveyou.xyz
*.baidu-iloveyou.xyz
*.umnmemovie.baidu-iloveyou.xyz
boleyncinemas.com
*.boleyncinemas.com
boostemporium.com.au
*.boostemporium.com.au
boulder-de.com
*.boulder-de.com
chicenroad.com
*.chicenroad.com
dualogis.com
*.dualogis.com
fnc9.live
*.fnc9.live
frey.bet
*.frey.bet
gieiifzaby.net
*.gieiifzaby.net
*.cpcontacts.giftcards.live
giftcards.live
*.giftcards.live
*.hostmaster.giftcards.live
*.mx.giftcards.live
*.webdisk.giftcards.live
*.whm.giftcards.live
*.www.giftcards.live
good99.bet
*.good99.bet
*.agency.kinghistoria.com
*.blog.kinghistoria.com
*.crosshistoric.kinghistoria.com
*.faizal.kinghistoria.com
*.games.kinghistoria.com
*.journal.kinghistoria.com
kinghistoria.com
*.kinghistoria.com
*.kitab.kinghistoria.com
*.lib.kinghistoria.com
*.lms.kinghistoria.com
*.mbkm.kinghistoria.com
*.sch.kinghistoria.com
*.sejarawan.kinghistoria.com
*.toko.kinghistoria.com
*.turnitin.kinghistoria.com
*.virtualtour.kinghistoria.com
leejmoment.com
*.leejmoment.com
mp4library.xyz
*.mp4library.xyz
nabdelyasmin.com
*.nabdelyasmin.com
*.32.nsender.io
nsender.io
*.nsender.io
*.32.orangetheory.studio
orangetheory.studio
*.orangetheory.studio
*.32.pahan.vip
pahan.vip
*.pahan.vip
*.ww38.pahan.vip
raaiorxfbt.net
*.raaiorxfbt.net
ratty.live
*.ratty.live
rentacarfsd.com
*.rentacarfsd.com
*.32.sonica.live
*.admin.sonica.live
*.mail.sonica.live
sonica.live
*.sonica.live
trevo.click
*.trevo.click
yatnngidra.net
*.yatnngidra.net
Other domains in certificate