Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=secretbenefits.cm
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 25, 2026
Valid Until
July 24, 2026
68 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
04:CF:62:93:3D:40:61:4E:6F:7C:94:F6:DC:90:3E:32:0F:85:B1:67:3C:EC:63:74:9D:87:F0:70:70:0C:D9:3D
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
mytupper.com
*.mytupper.com
amznon.com
*.amznon.com
*.aws.amznon.com
*.blog.amznon.com
*.ww16.amznon.com
bigo.au
*.bigo.au
*.ww38.bigo.au
bnp-bd.com
*.bnp-bd.com
breaolindahighschool.com
*.breaolindahighschool.com
*.ww25.breaolindahighschool.com
by3517.com
*.by3517.com
*.postmaster.by3517.com
*.ww25.by3517.com
*.ci.coforama.es
*.cicd.coforama.es
coforama.es
*.coforama.es
*.mycomfo.coforama.es
*.myconfo.coforama.es
*.pipeline.coforama.es
*.ww25.coforama.es
dexteraxle.com.au
*.dexteraxle.com.au
*.random.dexteraxle.com.au
*.website.dexteraxle.com.au
doujinanime.com
*.doujinanime.com
*.en.fischzubereitung.de
fischzubereitung.de
*.fischzubereitung.de
*.random.fischzubereitung.de
*.dan.idocinc.com
*.hostmaster.idocinc.com
idocinc.com
*.idocinc.com
*.wildcard.idocinc.com
*.ww17.idocinc.com
jobagency.com.au
*.jobagency.com.au
*.ww38.jobagency.com.au
kazumapartsonline.com
*.kazumapartsonline.com
kimchi.com.au
*.kimchi.com.au
ladiesgym.com.au
*.ladiesgym.com.au
*.ww38.ladiesgym.com.au
refinansman.com
*.refinansman.com
*.random.repairking.com.au
repairking.com.au
*.repairking.com.au
revistaimprescindibles.com
*.revistaimprescindibles.com
robo-erectus.org
*.robo-erectus.org
secretbenefits.cm
*.secretbenefits.cm
*.ww25.secretbenefits.cm
*.ww38.secretbenefits.cm
*.mailsrv.shuiguipai.com
*.random.shuiguipai.com
shuiguipai.com
*.shuiguipai.com
streetmap.au
*.streetmap.au
*.ww16.streetmap.au
*.ww25.streetmap.au
turingprime.com
*.turingprime.com
u18chan.org
*.u18chan.org
*.ww38.u18chan.org
*.random.whichdatarecovery.com.au
whichdatarecovery.com.au
*.whichdatarecovery.com.au
*.report.youroldguitar.com
*.visualizations.youroldguitar.com
youroldguitar.com
*.youroldguitar.com
*.ww25.zaplos.es
zaplos.es
*.zaplos.es
Other domains in certificate