Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=app-games-linrequun.xyz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
February 04, 2026
Valid Until
May 05, 2026
86 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B6:46:64:B2:16:97:85:3F:C3:E8:F1:33:76:31:E9:44:AD:47:1A:AD:80:D1:52:D3:FA:44:47:BB:A4:D4:22:6C
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
prym.studio
*.prym.studio
app-games-linrequun.xyz
*.app-games-linrequun.xyz
*.rustore.app-games-linrequun.xyz
brogin.com
*.brogin.com
*.drupal.brogin.com
clarat.com
*.clarat.com
*.desktops.clarat.com
*.cpanel.dahan.pro
*.cpcalendars.dahan.pro
*.cpcontacts.dahan.pro
dahan.pro
*.dahan.pro
*.mail.dahan.pro
*.webdisk.dahan.pro
*.webmail.dahan.pro
*.whm.dahan.pro
*.www.dahan.pro
*.b999578f-c2eb-47b2-a83c-6d207433084a.eldescuento.com
eldescuento.com
*.eldescuento.com
etilena.com
*.etilena.com
*.mobileconnect.etilena.com
insighttraveladventures.live
*.insighttraveladventures.live
inverbis.com
*.inverbis.com
investment-loans-tips.sbs
*.investment-loans-tips.sbs
jaberi.com
*.jaberi.com
kalakriti.com
*.kalakriti.com
kalinski.com
*.kalinski.com
kamalie.com
*.kamalie.com
kelseycollins.com
*.kelseycollins.com
kinnera.com
*.kinnera.com
kirafan.xyz
*.kirafan.xyz
kiwak.com
*.kiwak.com
kookaloo.com
*.kookaloo.com
kosuru.com
*.kosuru.com
kouya.com
*.kouya.com
kukla.com
*.kukla.com
kungl.com
*.kungl.com
kunigunda.com
*.kunigunda.com
kunstencultuur.com
*.kunstencultuur.com
kursdolara.com
*.kursdolara.com
kustomkreationz.com
*.kustomkreationz.com
kutho.com
*.kutho.com
kuusatsu.com
*.kuusatsu.com
*.apps.sktpe.com
*.borker.sktpe.com
*.edge.sktpe.com
*.iu.sktpe.com
*.login.sktpe.com
*.random.sktpe.com
sktpe.com
*.sktpe.com
*.ui.sktpe.com
*.wbroker.sktpe.com
*.web.sktpe.com
*.wildcard.sktpe.com
soularsystem.store
*.soularsystem.store
*.ww16.soularsystem.store
*.mis.ventas24horas.live
ventas24horas.live
*.ventas24horas.live
*.ww25.ventas24horas.live
Other domains in certificate