Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=claydomain.xyz
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 20, 2026
Valid Until
September 18, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CD:03:AB:8E:EC:13:DE:21:89:3F:4C:39:B8:E5:17:72:E3:7D:2C:ED:A7:1F:AF:8C:94:86:84:1C:55:BF:1A:41
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
ppcoaching.com
*.ppcoaching.com
*.random.ppcoaching.com
*.ww38.ppcoaching.com
0i0o.sbs
*.0i0o.sbs
*.nj.0i0o.sbs
*.support.0i0o.sbs
*.ww25.0i0o.sbs
claydomain.xyz
*.claydomain.xyz
*.kac0t.claydomain.xyz
*.pwb3b.claydomain.xyz
dessence.it
*.dessence.it
ewropea.eu
*.ewropea.eu
*.ww84.ewropea.eu
*.api.frostira.com
frostira.com
*.frostira.com
*.goldapple.frostira.com
*.megamarket.frostira.com
io9.ai
*.io9.ai
*.pay.io9.ai
*.4yj7f.meetlemonlighthq.top
*.6y8gt.meetlemonlighthq.top
*.87ab5.meetlemonlighthq.top
*.demo.meetlemonlighthq.top
*.ebwif.meetlemonlighthq.top
meetlemonlighthq.top
*.meetlemonlighthq.top
*.n2pro.meetlemonlighthq.top
*.qpuov.meetlemonlighthq.top
*.rkuvx.meetlemonlighthq.top
*.sbd1u.meetlemonlighthq.top
*.tpxa3.meetlemonlighthq.top
*.www.meetlemonlighthq.top
*.x7pal.meetlemonlighthq.top
*.y04uw.meetlemonlighthq.top
*.zruod.meetlemonlighthq.top
*.admin.milagos.com
*.app.milagos.com
*.backup.milagos.com
*.beta.milagos.com
*.demo.milagos.com
*.dev.milagos.com
*.hostmaster.milagos.com
*.m.milagos.com
*.mail.milagos.com
*.mailer.milagos.com
milagos.com
*.milagos.com
*.qa.milagos.com
*.secure.milagos.com
*.smtp.milagos.com
*.test.milagos.com
*.uat.milagos.com
*.web.milagos.com
*.ww1.milagos.com
*.ww11.milagos.com
*.ww16.milagos.com
*.ww17.milagos.com
*.ww25.milagos.com
*.ykdxmdev.milagos.com
*.9wtvxw.sgnaturanotary.com
sgnaturanotary.com
*.sgnaturanotary.com
*.1.shiwan.app
*.dev.shiwan.app
*.img.shiwan.app
*.m.shiwan.app
*.news.shiwan.app
*.nixqrm.shiwan.app
shiwan.app
*.shiwan.app
socialproofgift.com
*.socialproofgift.com
swedbamk.com
*.swedbamk.com
*.webmail.swedbamk.com
*.www.swedbamk.com
*.co.whazit.com
whazit.com
*.whazit.com
*.0afmf.xyrehab.xyz
xyrehab.xyz
*.xyrehab.xyz
*.z3dl1.xyrehab.xyz
Other domains in certificate