Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hg0205.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
April 21, 2026
Valid Until
July 20, 2026
70 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
97:25:EB:4E:19:CC:D5:9A:58:30:5B:F0:42:B8:91:45:A1:C2:D4:CA:80:8C:8D:C8:F9:A0:F0:DB:70:F2:92:3F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
obradtke.com
*.obradtke.com
*.oulwd.obradtke.com
*.4fe0297c-ec57-4d8e-a0d7-e65483c5db9b.angsa88id.com
*.acceptance.angsa88id.com
angsa88id.com
*.angsa88id.com
*.app.angsa88id.com
*.blog.angsa88id.com
*.demo.angsa88id.com
*.dev.angsa88id.com
*.media.angsa88id.com
*.clickclickww38.datenaughtysingles.click
*.clickww38.datenaughtysingles.click
datenaughtysingles.click
*.datenaughtysingles.click
*.random.datenaughtysingles.click
*.test.datenaughtysingles.click
*.aviso.eprf.eu
*.boletin.eprf.eu
*.cn.eprf.eu
eprf.eu
*.eprf.eu
*.feed.eprf.eu
*.info.eprf.eu
*.news.eprf.eu
*.vm.eprf.eu
flashsalesfinds.site
*.flashsalesfinds.site
*.ww25.flashsalesfinds.site
*.26dd2c82-93d8-454a-828b-8d68820f65e0.freeholdfire.com
*.69b270e6-ad28-41a3-a5db-a9c800ff68b7.freeholdfire.com
*.7fac195a-fd56-11ec-91da-e4434be1d160.freeholdfire.com
*.9f53bd0e-a741-4c5e-9a20-7d715e15e5c6.freeholdfire.com
*.admin.freeholdfire.com
*.assets.freeholdfire.com
*.auth.freeholdfire.com
*.autodiscover.freeholdfire.com
*.backup.freeholdfire.com
*.ca806ee4-2406-43ab-a16a-1103c52e5324.freeholdfire.com
*.dashboard.freeholdfire.com
*.demo.freeholdfire.com
*.docs.freeholdfire.com
*.external.freeholdfire.com
freeholdfire.com
*.freeholdfire.com
*.m.freeholdfire.com
*.mail2.freeholdfire.com
*.mailer.freeholdfire.com
*.marketing.freeholdfire.com
*.mcp.freeholdfire.com
*.members.freeholdfire.com
*.mta-sts.freeholdfire.com
*.public.freeholdfire.com
*.qa.freeholdfire.com
*.secure.freeholdfire.com
*.share.freeholdfire.com
*.sharepoint.freeholdfire.com
*.staging.freeholdfire.com
*.stg.freeholdfire.com
*.stores.freeholdfire.com
*.test.freeholdfire.com
*.uat.freeholdfire.com
*.v2.freeholdfire.com
*.web.freeholdfire.com
*.api.hg0205.com
*.app.hg0205.com
*.assets.hg0205.com
*.demo.hg0205.com
*.dev.hg0205.com
*.ed6ceecc-fd21-4ddd-aaea-11327005b05f.hg0205.com
hg0205.com
*.hg0205.com
*.hostmaster.hg0205.com
*.ipifzpprfmwwww.hg0205.com
*.smtps.hg0205.com
*.test.hg0205.com
*.vpn.hg0205.com
*.wwww.hg0205.com
*.a.liquifilm.com
*.hostmaster.liquifilm.com
liquifilm.com
*.liquifilm.com
*.old.liquifilm.com
*.staging-api.liquifilm.com
*.staging.liquifilm.com
*.kcybj.skerluke.com
skerluke.com
*.skerluke.com
Other domains in certificate