Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=34590.my
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 24, 2026
Valid Until
August 22, 2026
85 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7B:C0:A3:D7:E0:2B:8D:28:80:3F:7C:2E:70:4A:A4:77:4D:48:CE:D1:38:9F:21:16:67:5D:23:4F:A7:AC:94:2F
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
87 domains
pbuay.gdn
*.pbuay.gdn
34590.my
*.34590.my
47706.my
*.47706.my
53185.one
*.53185.one
537066.co
*.537066.co
aiqwatch.com
*.aiqwatch.com
capitalvcc.online
*.capitalvcc.online
cpugence.com
*.cpugence.com
*.1846m.cryptocurrency101.top
*.1yme1.cryptocurrency101.top
*.2194l.cryptocurrency101.top
*.4kxnn.cryptocurrency101.top
*.5jsd7.cryptocurrency101.top
*.78z68.cryptocurrency101.top
*.89wkp.cryptocurrency101.top
*.95lw2.cryptocurrency101.top
*.96c54.cryptocurrency101.top
*.ayfpk.cryptocurrency101.top
cryptocurrency101.top
*.cryptocurrency101.top
*.g22y8.cryptocurrency101.top
*.g89kw.cryptocurrency101.top
*.i51qg.cryptocurrency101.top
*.ip4i2.cryptocurrency101.top
*.j2zfz.cryptocurrency101.top
*.kp5po.cryptocurrency101.top
*.l7nqb.cryptocurrency101.top
*.l8kqx.cryptocurrency101.top
*.lnuxvi.cryptocurrency101.top
*.niw2v.cryptocurrency101.top
*.nslow.cryptocurrency101.top
*.o1ghs.cryptocurrency101.top
*.o7p4x.cryptocurrency101.top
*.orrwv.cryptocurrency101.top
*.pwb3b.cryptocurrency101.top
*.q2s8t.cryptocurrency101.top
*.qdiek.cryptocurrency101.top
*.qk6fu.cryptocurrency101.top
*.svzzq.cryptocurrency101.top
*.vhakn.cryptocurrency101.top
*.wsct4.cryptocurrency101.top
locallead.in
*.locallead.in
lottovip9888v2.xyz
*.lottovip9888v2.xyz
ojswq.co
*.ojswq.co
opencloneify.com
*.opencloneify.com
qkq2g2.cc
*.qkq2g2.cc
qualityweddingpath.beauty
*.qualityweddingpath.beauty
r64.my
*.r64.my
rtai.bond
*.rtai.bond
salsate.com
*.salsate.com
sawan668v4.xyz
*.sawan668v4.xyz
scratchcards.io
*.scratchcards.io
securegardenway.xyz
*.securegardenway.xyz
securetravelpath.xyz
*.securetravelpath.xyz
sendpap.com
*.sendpap.com
shadesaq.com
*.shadesaq.com
shimeji.xyz
*.shimeji.xyz
used-cars-523.sbs
*.used-cars-523.sbs
vistacloud.co
*.vistacloud.co
warehouse-jobs-5j2o5t8g3e1.sbs
*.warehouse-jobs-5j2o5t8g3e1.sbs
Other domains in certificate