Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=nung2hd.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 09, 2026
Valid Until
May 10, 2026
74 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
BF:20:57:47:39:CC:AE:04:48:66:EA:80:D5:6D:6D:C7:1B:19:1D:67:4D:41:92:9D:4A:E1:4E:7D:BF:B1:7A:E3
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
open.fail
*.open.fail
gardenhavens.com
*.gardenhavens.com
groupeburma.com
*.groupeburma.com
grovegem.com
*.grovegem.com
growingmindseec.com
*.growingmindseec.com
guardaserie.video
*.guardaserie.video
guidemetocannabis.com
*.guidemetocannabis.com
gulagmap.org
*.gulagmap.org
gundem.live
*.gundem.live
guoxue.pro
*.guoxue.pro
gwent-cards.com
*.gwent-cards.com
hairbandheaven.rocks
*.hairbandheaven.rocks
hairfreelasercenter.com
*.hairfreelasercenter.com
halodakimakura.com
*.halodakimakura.com
hann-accessories.com
*.hann-accessories.com
hanssenetgretel.com
*.hanssenetgretel.com
hart.partners
*.hart.partners
hbs-boots.com
*.hbs-boots.com
hbwatch.com
*.hbwatch.com
hdrezka.llc
*.hdrezka.llc
hdss.red
*.hdss.red
nung2hd.com
*.nung2hd.com
nutter.life
*.nutter.life
nxxx.mobi
*.nxxx.mobi
nycpizzahanoi.com
*.nycpizzahanoi.com
ocine.life
*.ocine.life
odoo.vision
*.odoo.vision
ok.tienda
*.ok.tienda
okll.info
*.okll.info
one-minnewater.be
*.one-minnewater.be
onehouse.pro
*.onehouse.pro
onesixthoutlet.com
*.onesixthoutlet.com
onlyporn.pro
*.onlyporn.pro
openweb.network
*.openweb.network
oploverz.red
*.oploverz.red
orangereya.today
*.orangereya.today
orhanicolours.com
*.orhanicolours.com
ouansthefarmresort.com
*.ouansthefarmresort.com
ouichef-clamart.com
*.ouichef-clamart.com
pandamonium.live
*.pandamonium.live
part-time-jobs-intl-4552482.world
*.part-time-jobs-intl-4552482.world
pelisflix2.codes
*.pelisflix2.codes
pelisplus2.solar
*.pelisplus2.solar
percentagecalculation.info
*.percentagecalculation.info
perfumeonlinesales.com
*.perfumeonlinesales.com
Other domains in certificate