Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=bnbx.live
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 10, 2026
Valid Until
August 08, 2026
51 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:15:BB:E5:8D:77:68:0E:49:44:94:96:6E:6A:13:79:51:3E:66:6B:89:7D:FA:27:C4:7E:1C:3B:B9:04:51:18
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
86 domains
mamgapark.io
*.mamgapark.io
*.mxtwtwubdb.mamgapark.io
1gah.bet
*.1gah.bet
antigravity.studio
*.antigravity.studio
bnbx.live
*.bnbx.live
*.ww38.bnbx.live
chathrbate.co
*.chathrbate.co
*.random.chathrbate.co
*.ww25.chathrbate.co
cupid789.info
*.cupid789.info
dealsycr.com
*.dealsycr.com
*.ww25.dealsycr.com
*.ww38.dealsycr.com
*.32.elzorro.live
*.admin.elzorro.live
elzorro.live
*.elzorro.live
*.m.elzorro.live
*.random.elzorro.live
*.www.elzorro.live
*.email.flashpay.tech
flashpay.tech
*.flashpay.tech
*.merchant.flashpay.tech
*.repayment.flashpay.tech
*.smtp1.flashpay.tech
*.ww25.flashpay.tech
gunhero3.xyz
*.gunhero3.xyz
inmaryj.com
*.inmaryj.com
*.m.inmaryj.com
*.track.inmaryj.com
*.ww.inmaryj.com
jigu.live
*.jigu.live
*.32.kartel.live
kartel.live
*.kartel.live
*.ww38.kartel.live
*.hostmaster.krunler.io
*.jenkins.krunler.io
krunler.io
*.krunler.io
*.ww38.krunler.io
ninacole.life
*.ninacole.life
*.demo.pdfdrive.online
*.jenkins.pdfdrive.online
pdfdrive.online
*.pdfdrive.online
*.random.pdfdrive.online
*.staging.pdfdrive.online
*.tobi.pdfdrive.online
phimonline247.com
*.phimonline247.com
*.sitemaps.phimonline247.com
*.autodiscover.pk88bet.me
pk88bet.me
*.pk88bet.me
*.whm.pk88bet.me
*.ww25.pk88bet.me
*.3wghupdz.rdcc3zjy.cc
rdcc3zjy.cc
*.rdcc3zjy.cc
sbcoc.info
*.sbcoc.info
*.dan.thetuttletwins.com
*.insight.thetuttletwins.com
*.staging.thetuttletwins.com
thetuttletwins.com
*.thetuttletwins.com
*.api.thewhisperer.io
*.clerk.thewhisperer.io
*.crawler.thewhisperer.io
thewhisperer.io
*.thewhisperer.io
vgsbetid.click
*.vgsbetid.click
Other domains in certificate