Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ntrx6nd8z.cc
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 06, 2026
Valid Until
May 07, 2026
72 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
08:76:3C:AC:53:56:1F:D6:92:8C:9F:39:2C:D7:5A:27:5F:1C:37:A2:A0:DB:43:8A:D9:F9:B5:D7:40:29:31:4F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
openfoot.com
*.openfoot.com
ntrx6nd8z.cc
*.ntrx6nd8z.cc
nzfbp.gdn
*.nzfbp.gdn
odufc.org
*.odufc.org
oezaas.bid
*.oezaas.bid
online-mba-sa-5612.click
*.online-mba-sa-5612.click
openmultiurls.com
*.openmultiurls.com
opzhsedt.xyz
*.opzhsedt.xyz
orsohealth.com
*.orsohealth.com
orte.tokyo
*.orte.tokyo
p666g887.vip
*.p666g887.vip
palmdaleloans.com
*.palmdaleloans.com
parmi.fr
*.parmi.fr
pasukan77.fun
*.pasukan77.fun
patiosonoro.com
*.patiosonoro.com
perfectprospectpro.co
*.perfectprospectpro.co
pgaaf.pro
*.pgaaf.pro
pgwrt.cc
*.pgwrt.cc
pittsburghsteelersjerseys.com
*.pittsburghsteelersjerseys.com
play-beta-league.xyz
*.play-beta-league.xyz
play-flash-gorge.xyz
*.play-flash-gorge.xyz
play-obsidian-arena.xyz
*.play-obsidian-arena.xyz
play-valor-sphere.xyz
*.play-valor-sphere.xyz
plentyvape.net
*.plentyvape.net
pobeg.online
*.pobeg.online
polnice.xyz
*.polnice.xyz
pomegranatenoir.site
*.pomegranatenoir.site
powersystems.net
*.powersystems.net
preferlight.org
*.preferlight.org
privatesecuritydallas.com
*.privatesecuritydallas.com
promptonality.com
*.promptonality.com
pulsa303-un.com
*.pulsa303-un.com
qmzj8.cc
*.qmzj8.cc
qpt86.top
*.qpt86.top
qrebvh.pro
*.qrebvh.pro
quads.es
*.quads.es
qy0214.sbs
*.qy0214.sbs
qzjkha.cc
*.qzjkha.cc
rafaella.it
*.rafaella.it
recessionalweddingsongs.com
*.recessionalweddingsongs.com
regularwinsslots.com
*.regularwinsslots.com
resetdigetion.com
*.resetdigetion.com
rgxrs35.cyou
*.rgxrs35.cyou
rick-heli.info
*.rick-heli.info
rkqfp.academy
*.rkqfp.academy
Other domains in certificate