Open
Cached
·
6h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=kasihmenang10.click
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
April 18, 2026
Valid Until
July 17, 2026
39 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
8D:84:DE:6E:26:23:C4:98:33:20:5D:3B:4C:4A:EA:FC:53:1B:04:49:F4:1A:07:EC:C5:8B:80:4D:88:EB:E8:07
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
padelscanner.io
*.padelscanner.io
33bet999.bet
*.33bet999.bet
antwepriza.be
*.antwepriza.be
atodocelu.com
*.atodocelu.com
*.cpanel.atodocelu.com
*.mail.atodocelu.com
*.mi.atodocelu.com
*.new.atodocelu.com
*.store.atodocelu.com
*.sub.atodocelu.com
*.sub1.atodocelu.com
*.sub2.atodocelu.com
*.sub3.atodocelu.com
ayaan.pro
*.ayaan.pro
cloudbitcoin.org
*.cloudbitcoin.org
*.trade.cloudbitcoin.org
*.wallet.cloudbitcoin.org
*.www.cloudbitcoin.org
coaxestudio.co
*.coaxestudio.co
cwin.bio
*.cwin.bio
foggie.com
*.foggie.com
*.forum.foggie.com
*.kids.foggie.com
*.mail.foggie.com
*.random.foggie.com
*.ww25.foggie.com
*.cook.fultonstatecourt.com
fultonstatecourt.com
*.fultonstatecourt.com
*.poczta.fultonstatecourt.com
*.6uwaa8r3ch4la5lx.gluhealth.info
gluhealth.info
*.gluhealth.info
*.ww25.gluhealth.info
huzzr.com
*.huzzr.com
*.support.huzzr.com
kasihmenang10.click
*.kasihmenang10.click
korob.space
*.korob.space
*.mail.korob.space
*.sitemap.korob.space
*.www.korob.space
muzlab.co
*.muzlab.co
*.ww38.muzlab.co
navyfedederal.org
*.navyfedederal.org
*.ww25.navyfedederal.org
*.ww38.navyfedederal.org
optische-kohaerenztomographie.de
*.optische-kohaerenztomographie.de
*.ww38.optische-kohaerenztomographie.de
pescayvende.com
*.pescayvende.com
shimplicity.com
*.shimplicity.com
sportlive22.live
*.sportlive22.live
stereospoutfireextinguisher.com
*.stereospoutfireextinguisher.com
*.community.strongcoders.com
*.jp.strongcoders.com
strongcoders.com
*.strongcoders.com
*.ww25.strongcoders.com
*.analytic.tomcar.com.au
*.support.tomcar.com.au
tomcar.com.au
*.tomcar.com.au
*.webmail.tomcar.com.au
*.ww33.tomcar.com.au
webcirc.com
*.webcirc.com
*.ww25.webcirc.com
*.lets.write.com.au
*.readyset.write.com.au
*.researchedit.write.com.au
write.com.au
*.write.com.au
Other domains in certificate