Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=flashpay.tech
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 08, 2026
Valid Until
August 06, 2026
50 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8F:28:20:8E:E5:4C:05:1F:1C:F6:91:67:B3:85:94:6E:08:46:FC:CD:FA:7A:CE:F5:B0:6A:3B:CD:8D:B0:AE:5E
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
natalie.bio
*.natalie.bio
*.pop.natalie.bio
*.sitemap.natalie.bio
*.www.natalie.bio
1225.live
*.1225.live
2d2d.io
*.2d2d.io
*.cdn.2d2d.io
9movies.life
*.9movies.life
ahsay.co
*.ahsay.co
*.fddf4fa8-5137-41f9-b3fc-ee47544a924f.ahsay.co
*.m.ahsay.co
*.ww38.ahsay.co
*.www.ahsay.co
avnews.live
*.avnews.live
commercialrepair.tech
*.commercialrepair.tech
*.www.commercialrepair.tech
*.clevercoding.eastcountrywireless.com
*.com.eastcountrywireless.com
eastcountrywireless.com
*.eastcountrywireless.com
*.good-day.eastcountrywireless.com
*.have-a-good-day.eastcountrywireless.com
*.tube-junk.eastcountrywireless.com
*.vcsa.eastcountrywireless.com
*.vsca.eastcountrywireless.com
*.email.flashpay.tech
flashpay.tech
*.flashpay.tech
*.merchant.flashpay.tech
*.repayment.flashpay.tech
*.ww25.flashpay.tech
*.bbs.girlhacks.tech
girlhacks.tech
*.girlhacks.tech
*.hostmaster.girlhacks.tech
hacknews.tech
*.hacknews.tech
*.ww25.hacknews.tech
heatworks.tech
*.heatworks.tech
*.ww38.heatworks.tech
hirework.io
*.hirework.io
*.info.hirework.io
*.www.hirework.io
*.admin.mporn.mobi
mporn.mobi
*.mporn.mobi
*.ww16.mporn.mobi
*.ww25.mporn.mobi
*.ww38.mporn.mobi
*.ww6.mporn.mobi
*.www.mporn.mobi
peachtree.cc
*.peachtree.cc
*.ww38.peachtree.cc
postafr.click
*.postafr.click
*.vpn.postafr.click
*.ww38.postafr.click
puma-motors.com
*.puma-motors.com
*.www.puma-motors.com
retailatscale.io
*.retailatscale.io
*.track.retailatscale.io
skytools.pro
*.skytools.pro
*.autodiscover.thetaichieffect.com
thetaichieffect.com
*.thetaichieffect.com
*.ww38.thetaichieffect.com
thiswasonlyadollar.xyz
*.thiswasonlyadollar.xyz
*.ww38.thiswasonlyadollar.xyz
unsin.studio
*.unsin.studio
westshorepizzaofstpetersburg.com
*.westshorepizzaofstpetersburg.com
*.ww25.westshorepizzaofstpetersburg.com
*.ww38.westshorepizzaofstpetersburg.com
yoasobisingapore.info
*.yoasobisingapore.info
Other domains in certificate