Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=stag.au
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 18, 2026
Valid Until
May 19, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
E7:96:88:76:87:F4:08:3C:90:BF:1E:5C:DA:65:B1:32:7B:81:8A:E1:BB:80:CD:53:17:20:4E:76:82:3E:30:CE
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
orayan.com
*.orayan.com
*.demo.orayan.com
*.forum.orayan.com
*.help.orayan.com
*.ww1.orayan.com
*.ww11.orayan.com
*.ww16.orayan.com
*.ww17.orayan.com
*.ww38.orayan.com
37676.cc
*.37676.cc
866913.one
*.866913.one
acgrenoble.fr
*.acgrenoble.fr
adhtv.eu
*.adhtv.eu
apc8607ap23.cc
*.apc8607ap23.cc
autismcalifornia.com
*.autismcalifornia.com
*.m.autismcalifornia.com
*.sitemaps.autismcalifornia.com
*.vpn.autismcalifornia.com
*.www.autismcalifornia.com
*.wwww.autismcalifornia.com
bambooa.com
*.bambooa.com
bartsmith.be
*.bartsmith.be
bestsellingai.com
*.bestsellingai.com
*.www.bestsellingai.com
bia-inja-film.click
*.bia-inja-film.click
billamart.com
*.billamart.com
buero-service.com
*.buero-service.com
*.api.businessiq.cyou
businessiq.cyou
*.businessiq.cyou
*.intranet.businessiq.cyou
*.shop.businessiq.cyou
*.sitemap.businessiq.cyou
*.store.businessiq.cyou
*.www.businessiq.cyou
carpetcleanersweybridge.com
*.carpetcleanersweybridge.com
carson.best
*.carson.best
cctvbokep.online
*.cctvbokep.online
*.cicd.cctvbokep.online
*.cpcontacts.cctvbokep.online
churrascaria.biz
*.churrascaria.biz
dreamhomedesigners.com
*.dreamhomedesigners.com
*.api.gotus.it
gotus.it
*.gotus.it
*.backend.guaged.com
guaged.com
*.guaged.com
*.wildcard.guaged.com
stag.au
*.stag.au
turkifsaizle69.sbs
*.turkifsaizle69.sbs
uytre.cc
*.uytre.cc
vadab.be
*.vadab.be
voiceoversghana.com
*.voiceoversghana.com
warren.best
*.warren.best
xhk7e0o.cyou
*.xhk7e0o.cyou
xn--estx75elfc.com
*.xn--estx75elfc.com
xn--hxto1mv96a.com
*.xn--hxto1mv96a.com
ydm509.top
*.ydm509.top
*.cu.ziua.cf
ziua.cf
*.ziua.cf
Other domains in certificate