Open
Cached
·
just now
79/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=fratruaroniiodealbites.cyou
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 19, 2026
Valid Until
May 20, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FB:1C:0F:BF:F3:9B:54:73:72:D8:4F:E3:B5:73:5B:F6:EB:E0:0E:F8:7E:4C:EB:54:23:1D:CD:C6:8B:A1:09:51
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
openclassupsite.com
*.openclassupsite.com
alvaroferreiraleiloeiro.com
*.alvaroferreiraleiloeiro.com
daslot.biz
*.daslot.biz
*.www.daslot.biz
drama101.net
*.drama101.net
favoritekol.com
*.favoritekol.com
*.app.fratruaroniiodealbites.cyou
fratruaroniiodealbites.cyou
*.fratruaroniiodealbites.cyou
*.intranet.fratruaroniiodealbites.cyou
g52agaxxeart.xyz
*.g52agaxxeart.xyz
*.ww25.g52agaxxeart.xyz
*.api.gossipscenekey.live
gossipscenekey.live
*.gossipscenekey.live
*.intranet.gossipscenekey.live
*.17.ii.au
*.c.ii.au
*.dki.ii.au
*.i.ii.au
ii.au
*.ii.au
*.ii.ii.au
*.iii.ii.au
*.iinet.ii.au
*.k.ii.au
*.kopiengebildetwerden.ii.au
*.kwanamba.ii.au
*.leo.ii.au
*.leoncuroo.ii.au
*.lm.ii.au
*.namba.ii.au
*.nikusubi.ii.au
*.no.ii.au
*.o.ii.au
*.y.ii.au
mountainears.com
*.mountainears.com
myredvestcompanion.com
*.myredvestcompanion.com
oiq3sr2.cc
*.oiq3sr2.cc
olsonstudio.com
*.olsonstudio.com
*.admin.otaru.works
*.api.otaru.works
*.app.otaru.works
*.assets.otaru.works
*.backup.otaru.works
*.dashboard.otaru.works
*.demo.otaru.works
*.dev.otaru.works
*.hostmaster.otaru.works
*.mail.otaru.works
*.mailer.otaru.works
*.marketing.otaru.works
otaru.works
*.otaru.works
*.qa.otaru.works
*.staging.otaru.works
*.stg.otaru.works
*.uat.otaru.works
*.urwfjdemo.otaru.works
*.v1.otaru.works
*.v2.otaru.works
*.web.otaru.works
panutbypanidor.com
*.panutbypanidor.com
paviljonki.com
*.paviljonki.com
peakfitnessodyssey.run
*.peakfitnessodyssey.run
*.app.soccerseminar.com
*.hostmaster.soccerseminar.com
*.m.soccerseminar.com
*.sitemap.soccerseminar.com
*.sitemaps.soccerseminar.com
soccerseminar.com
*.soccerseminar.com
*.www.soccerseminar.com
xxxplus.xyz
*.xxxplus.xyz
Other domains in certificate