Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=donatenow.top
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 17, 2026
Valid Until
May 18, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B9:B2:51:31:A2:A2:29:36:5E:A0:49:B6:6E:E3:EA:F2:B4:5B:13:BA:E3:37:8F:A9:3E:1A:74:93:A3:30:5D:AD
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mannil.com
*.mannil.com
*.crm.mannil.com
*.hxgdcm.mannil.com
*.wiki.mannil.com
apiscandia.com
*.apiscandia.com
*.admin.arigatou.it
arigatou.it
*.arigatou.it
*.supersets.arigatou.it
armyapk.xyz
*.armyapk.xyz
*.ww25.armyapk.xyz
*.ww38.armyapk.xyz
astrosmokeshopca.com
*.astrosmokeshopca.com
*.ftp.astrosmokeshopca.com
backsplashideas.us
*.backsplashideas.us
*.hostmaster.backsplashideas.us
*.mail.backsplashideas.us
*.www.backsplashideas.us
bfd.us
*.bfd.us
*.qatools.bfd.us
blockanalysissoftware.com
*.blockanalysissoftware.com
*.www.blockanalysissoftware.com
chaykh-soussi1.online
*.chaykh-soussi1.online
*.ww38.chaykh-soussi1.online
deltatogel-06.pro
*.deltatogel-06.pro
*.d.donatenow.top
donatenow.top
*.donatenow.top
featvision.com
*.featvision.com
*.sitemap.featvision.com
*.admin.gamegloryhero.com
gamegloryhero.com
*.gamegloryhero.com
*.sitemaps.gamegloryhero.com
*.backend.gastricsleeves2024op.space
gastricsleeves2024op.space
*.gastricsleeves2024op.space
*.random.gastricsleeves2024op.space
*.www.gastricsleeves2024op.space
irepair.au
*.irepair.au
*.ww25.irepair.au
love-shayari.co
*.love-shayari.co
*.23da60ba7935.pressealgerie.info
*.dc-a9b38b107528.pressealgerie.info
*.hostmaster.pressealgerie.info
*.mail.pressealgerie.info
pressealgerie.info
*.pressealgerie.info
*.remote.pressealgerie.info
*.smtp.pressealgerie.info
*.staging.pressealgerie.info
*.random.suifusan.com
suifusan.com
*.suifusan.com
sunshine.cm
*.sunshine.cm
*.wildcard.sunshine.cm
*.ww38.sunshine.cm
*.antivirus.toida.com
*.gp.toida.com
*.mail.toida.com
*.rds.toida.com
*.sitemap.toida.com
*.sitemaps.toida.com
*.ssl.toida.com
*.sslvpn.toida.com
toida.com
*.toida.com
*.vpn.toida.com
*.webmail.toida.com
*.ww16.toida.com
*.ww17.toida.com
*.www.toida.com
*.m.vivara777.bet
vivara777.bet
*.vivara777.bet
*.wildcard.vivara777.bet
Other domains in certificate