Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=flix21.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
56:35:1B:9B:54:1E:30:C3:9C:A4:A2:3F:41:1E:75:7F:B0:E1:11:71:5A:E0:E2:BA:8B:4F:39:AA:DE:DB:01:D4
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
present.finance
*.present.finance
additional.life
*.additional.life
*.ww25.additional.life
*.admin.alulus.com
alulus.com
*.alulus.com
*.ftp.alulus.com
*.git.alulus.com
*.lulu.alulus.com
*.m.alulus.com
*.mail.alulus.com
*.mailin.alulus.com
*.mx.alulus.com
*.mx02.alulus.com
*.mx1.alulus.com
*.mx20.alulus.com
*.mx3.alulus.com
*.mx4.alulus.com
*.newmail.alulus.com
*.relay2.alulus.com
*.server1.alulus.com
*.server2.alulus.com
*.sitemaps.alulus.com
*.smtp1.alulus.com
*.smtpseguro.alulus.com
*.uat.alulus.com
*.vmail.alulus.com
*.vpn.alulus.com
*.webmail.alulus.com
*.ww.alulus.com
*.ww1.alulus.com
*.ww12.alulus.com
*.ww7.alulus.com
*.ww99.alulus.com
*.www.alulus.com
canlimaclar9130.sbs
*.canlimaclar9130.sbs
*.doc.dragonprotocol.io
dragonprotocol.io
*.dragonprotocol.io
*.gitbook.dragonprotocol.io
*.layer.dragonprotocol.io
eloquentwellness.com
*.eloquentwellness.com
exwellness.com
*.exwellness.com
fapsincinteractive.com
*.fapsincinteractive.com
fashionbet540.com
*.fashionbet540.com
flix21.xyz
*.flix21.xyz
*.net.flix21.xyz
*.pemutar.flix21.xyz
*.series.flix21.xyz
*.watch.flix21.xyz
*.ww25.flix21.xyz
*.ww38.flix21.xyz
glamandbrime.com
*.glamandbrime.com
*.com.hellenscollections.com
hellenscollections.com
*.hellenscollections.com
*.hms.hellenscollections.com
*.org.hellenscollections.com
*.surveystask.hellenscollections.com
*.writershub.hellenscollections.com
hongyun128m.cc
*.hongyun128m.cc
lionceau.org
*.lionceau.org
lkmjx.gdn
*.lkmjx.gdn
msblq.com
*.msblq.com
*.api.musicfy.club
*.app.musicfy.club
musicfy.club
*.musicfy.club
pairs.info
*.pairs.info
*.mail.sorrows.it
sorrows.it
*.sorrows.it
tayya.org
*.tayya.org
*.test.tayya.org
Other domains in certificate