Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=ywap.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
May 31, 2026
Valid Until
August 29, 2026
81 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
68:C9:44:03:C8:70:52:C3:0C:02:57:D1:FF:DC:1F:75:6C:8B:98:13:C5:DB:DE:C7:EE:25:45:0D:41:10:C6:43
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
89 domains
pinnaclecareerpath.live
*.pinnaclecareerpath.live
ayxdjx.com
*.ayxdjx.com
*.random.ayxdjx.com
petalztostemz.info
*.petalztostemz.info
phbmwk.cc
*.phbmwk.cc
*.ww25.phbmwk.cc
pideloen.com
*.pideloen.com
pinkmilf.pics
*.pinkmilf.pics
pinnaclefitnesspath.run
*.pinnaclefitnesspath.run
powerfulfrequency.com
*.powerfulfrequency.com
powerfulfrequency.info
*.powerfulfrequency.info
proyek88-main.quest
*.proyek88-main.quest
r-j.app
*.r-j.app
racingexhausts.com
*.racingexhausts.com
rajhyjobs.plumbing
*.rajhyjobs.plumbing
recoverysolutionsinc.com
*.recoverysolutionsinc.com
republicancounty.com
*.republicancounty.com
rjhtwqc.my
*.rjhtwqc.my
s-s.app
*.s-s.app
saludigital360.com
*.saludigital360.com
scientifiq.xyz
*.scientifiq.xyz
snowsen.com
*.snowsen.com
ss3353.vip
*.ss3353.vip
sslm.org
*.sslm.org
stayfitguru.com
*.stayfitguru.com
tamil.run
*.tamil.run
teamofn.info
*.teamofn.info
thebook.blog
*.thebook.blog
thepenandscribe.com
*.thepenandscribe.com
*.desktop.tingum.shop
*.kfzwbnjm.tingum.shop
*.rdp.tingum.shop
*.terminal.tingum.shop
tingum.shop
*.tingum.shop
*.web.tingum.shop
*.xtctxremote2.tingum.shop
trader.autos
*.trader.autos
ttr42.com
*.ttr42.com
tzm0alnmmi.top
*.tzm0alnmmi.top
ultimatetravelspecs.live
*.ultimatetravelspecs.live
vacationclarityhub.xyz
*.vacationclarityhub.xyz
vddeutn400.vip
*.vddeutn400.vip
vision-shares.com
*.vision-shares.com
vlxx3s.net
*.vlxx3s.net
wg7e83fqz.top
*.wg7e83fqz.top
wintrydomain.com
*.wintrydomain.com
*.afil.ywap.com
ywap.com
*.ywap.com
zanranteam.com
*.zanranteam.com
Other domains in certificate