Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=luxcw.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 06, 2026
Valid Until
August 04, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:88:30:1C:D6:9F:FE:1F:9D:6D:05:FD:F0:FA:8A:C4:FC:94:B5:7A:0B:81:D0:EB:E1:EC:C7:AD:48:BA:DE:F3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
ndakota.org
*.ndakota.org
*.ww25.ndakota.org
1praum.bet
*.1praum.bet
amec.site
*.amec.site
*.mx.amec.site
betyap663.com
*.betyap663.com
*.games.betyap663.com
*.m.betyap663.com
*.rgs-jgame.betyap663.com
dama-popup.com
*.dama-popup.com
*.random.dama-popup.com
enhanced-verify.com
*.enhanced-verify.com
*.ww.enhanced-verify.com
*.ww25.enhanced-verify.com
*.ww38.enhanced-verify.com
golos-detei.online
*.golos-detei.online
*.ww25.golos-detei.online
*.billing.ladypunk.com
*.d.ladypunk.com
*.dev.ladypunk.com
*.flowiseai.ladypunk.com
*.ftp.ladypunk.com
*.help.ladypunk.com
*.hotfix.ladypunk.com
*.india.ladypunk.com
ladypunk.com
*.ladypunk.com
*.mail3.ladypunk.com
*.ns2.ladypunk.com
*.photos.ladypunk.com
*.report.ladypunk.com
*.reporting.ladypunk.com
*.sandbox.ladypunk.com
*.sc.ladypunk.com
*.subscribe.ladypunk.com
*.superset.ladypunk.com
*.uat.ladypunk.com
*.visualizations.ladypunk.com
*.en.luxcw.com
*.img1-fg.luxcw.com
luxcw.com
*.luxcw.com
*.ww38.luxcw.com
*.dan.mortgagefraud.com.au
mortgagefraud.com.au
*.mortgagefraud.com.au
natesbagels.com
*.natesbagels.com
*.random.natesbagels.com
*.ww25.natesbagels.com
nationaldebthelpline.org
*.nationaldebthelpline.org
*.random.nationaldebthelpline.org
*.ww25.nationaldebthelpline.org
*.www.nationaldebthelpline.org
nelflix.com
*.nelflix.com
*.ww25.nelflix.com
*.ww42.nelflix.com
newasiantv.info
*.newasiantv.info
*.ww25.newasiantv.info
*.ww38.newasiantv.info
newsdocviral.com
*.newsdocviral.com
*.ww25.newsdocviral.com
newtoki303.com
*.newtoki303.com
*.ww25.newtoki303.com
ppg33.bet
*.ppg33.bet
*.api.ratoneando.com
*.bijou.ratoneando.com
*.citi.ratoneando.com
*.notexistsciti.ratoneando.com
*.notexistsww.ratoneando.com
ratoneando.com
*.ratoneando.com
*.ww.ratoneando.com
*.ww25.ratoneando.com
*.wwe.ratoneando.com
*.www.ratoneando.com
Other domains in certificate