Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=monzat.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 01, 2026
Valid Until
May 02, 2026
77 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F5:B3:B8:7C:BD:67:3D:DD:13:A9:E5:01:27:1A:BE:F0:2A:DA:58:19:F2:A1:6B:C6:59:D3:59:2E:DC:29:E7:F7
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
peguero.com
*.peguero.com
*.yensi.peguero.com
*.adhya.appsun.win
*.afvyxup.appsun.win
*.ankyny.appsun.win
*.anthrax.appsun.win
appsun.win
*.appsun.win
*.aptoo.appsun.win
*.axqyuwemu.appsun.win
*.boulevard.appsun.win
*.buupheneo.appsun.win
*.bwinmhyj.appsun.win
*.cohosef.appsun.win
*.conti.appsun.win
*.dabney.appsun.win
*.daint.appsun.win
*.deapaby.appsun.win
*.dimy.appsun.win
*.fzqindtm.appsun.win
*.gyfefo.appsun.win
*.hiydwyh.appsun.win
*.ihmisen.appsun.win
*.inezcomoa.appsun.win
*.jocic.appsun.win
*.julik.appsun.win
*.kakefiy.appsun.win
*.kasybaruy.appsun.win
*.laemiqgie.appsun.win
*.lioqxaf.appsun.win
*.lucre.appsun.win
*.lukiy.appsun.win
*.m.appsun.win
*.media.appsun.win
*.murue.appsun.win
*.obstreperous.appsun.win
*.otochy.appsun.win
*.poowk.appsun.win
*.pumeyfi.appsun.win
*.qekoytry.appsun.win
*.riesjoja.appsun.win
*.syomno.appsun.win
*.tasted.appsun.win
*.uleqsaebqy.appsun.win
*.unnoame.appsun.win
*.uzfuzoho.appsun.win
*.veilgoro.appsun.win
*.wisiryw.appsun.win
*.woyrm.appsun.win
*.wuheix.appsun.win
*.wuloo.appsun.win
*.xaumdi.appsun.win
*.xubirari.appsun.win
*.yhjaiv.appsun.win
*.zowugy.appsun.win
blocknotify.io
*.blocknotify.io
*.htbucsoxcksmtp.blocknotify.io
dominiospersonales.com
*.dominiospersonales.com
*.ww16.dominiospersonales.com
*.airflow-production.filezy.net
*.dev.filezy.net
filezy.net
*.filezy.net
*.s01.filezy.net
*.backend.gta911.com
*.dashboard.gta911.com
*.dashs.gta911.com
*.demo.gta911.com
gta911.com
*.gta911.com
guins.com
*.guins.com
*.pudgypen.guins.com
*.wiki.guins.com
*.access.mizuchi.com
mizuchi.com
*.mizuchi.com
*.connect.monzat.com
monzat.com
*.monzat.com
ofertop.com
*.ofertop.com
*.wiki.ofertop.com
*.crm.pasjans.com
*.dev.pasjans.com
pasjans.com
*.pasjans.com
Other domains in certificate