Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=36756.ad
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026
84 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
09:AC:98:27:05:D3:97:A0:D2:84:C0:8B:1D:D0:5B:ED:FF:C9:33:B8:C0:0A:D2:D7:50:F2:EC:E8:54:F3:2A:10
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
positionamplifyywave.info
*.positionamplifyywave.info
36756.ad
*.36756.ad
567k8.top
*.567k8.top
568310.me
*.568310.me
*.app.blockswap.live
blockswap.live
*.blockswap.live
boostingunsupervisedhq.co
*.boostingunsupervisedhq.co
box-bed-br55.sbs
*.box-bed-br55.sbs
brewcraft.company
*.brewcraft.company
brickscitylego.com
*.brickscitylego.com
brightsmilesolutions.com
*.brightsmilesolutions.com
brownbunnyfoods.com
*.brownbunnyfoods.com
cama-box-br11.sbs
*.cama-box-br11.sbs
carrierspac.com
*.carrierspac.com
cartawealthltd.com
*.cartawealthltd.com
centurytrustsonline.com
*.centurytrustsonline.com
chanduyadav.com
*.chanduyadav.com
chatgpt-courses-5875.sbs
*.chatgpt-courses-5875.sbs
chatvr.app
*.chatvr.app
cicilailai.com
*.cicilailai.com
coachhajar.co
*.coachhajar.co
cod-recovery.com
*.cod-recovery.com
cognishift.in
*.cognishift.in
cognizantignition.com
*.cognizantignition.com
comegetnosy.com
*.comegetnosy.com
comprar-smarttvs-br.sbs
*.comprar-smarttvs-br.sbs
forexeagles.com
*.forexeagles.com
*.0n7prm.fuelamplifyycrown.info
fuelamplifyycrown.info
*.fuelamplifyycrown.info
fuyujilife.cn
*.fuyujilife.cn
fvqeeb.auction
*.fvqeeb.auction
fvqth.love
*.fvqth.love
g88v.cyou
*.g88v.cyou
highfrequencysociety.com
*.highfrequencysociety.com
hotty.app
*.hotty.app
playtopia.shop
*.playtopia.shop
project173798680.com
*.project173798680.com
propelamplifyycrown.info
*.propelamplifyycrown.info
publicchair.com.cn
*.publicchair.com.cn
tryhqalliancezone.com
*.tryhqalliancezone.com
tryinterioreditionsgroup.com
*.tryinterioreditionsgroup.com
trykonnector.com
*.trykonnector.com
trykonnectorcrew.com
*.trykonnectorcrew.com
trythealliancehq.com
*.trythealliancehq.com
trythealliancehub.com
*.trythealliancehub.com
vwtesk.top
*.vwtesk.top
Other domains in certificate