Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=mangtrinh.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
67 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:9B:95:01:1E:5E:B1:CF:C1:D7:33:81:53:6B:C2:89:B8:6C:F1:F4:A3:8E:58:B3:13:52:7F:48:41:59:75:5D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
myepharma.com
*.myepharma.com
htrbv.pro
*.htrbv.pro
iokje.academy
*.iokje.academy
iykzvh.top
*.iykzvh.top
jdyth.pro
*.jdyth.pro
knqad.pro
*.knqad.pro
kolewpptcogj.cc
*.kolewpptcogj.cc
lhspw.cn
*.lhspw.cn
ligdm.gdn
*.ligdm.gdn
loxkab.top
*.loxkab.top
mailboxy.me
*.mailboxy.me
*.dev.mangtrinh.com
mangtrinh.com
*.mangtrinh.com
marriagetherapist637555.icu
*.marriagetherapist637555.icu
mehrotras.net
*.mehrotras.net
mp3paw.watch
*.mp3paw.watch
nem.au
*.nem.au
o12c2cb9.top
*.o12c2cb9.top
pgalb.pro
*.pgalb.pro
piuyt.bid
*.piuyt.bid
plmqy.pro
*.plmqy.pro
pornsax.cam
*.pornsax.cam
qij148j.top
*.qij148j.top
siqez.net
*.siqez.net
spatialduet.com
*.spatialduet.com
sportorganization.org
*.sportorganization.org
statisticssite.com
*.statisticssite.com
tggwin.love
*.tggwin.love
tggwin.pro
*.tggwin.pro
tructiepbongda.men
*.tructiepbongda.men
ugdfl.bid
*.ugdfl.bid
ureeka.com
*.ureeka.com
*.ww16.ureeka.com
uringherenurew.info
*.uringherenurew.info
uuu6877.top
*.uuu6877.top
uuu8569.top
*.uuu8569.top
uuu8973.top
*.uuu8973.top
vr844.top
*.vr844.top
wonderwomandah.com
*.wonderwomandah.com
www11568k.com
*.www11568k.com
xcjjg.cn
*.xcjjg.cn
xpsvk.pro
*.xpsvk.pro
xqemz4f.top
*.xqemz4f.top
ycxfc.bid
*.ycxfc.bid
yz735tg1.top
*.yz735tg1.top
zkk.biz
*.zkk.biz
Other domains in certificate