Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aimerzion.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 14, 2026
Valid Until
September 12, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:6B:43:AD:02:63:A7:F5:35:74:3B:CC:5B:78:81:D1:15:04:BD:93:BF:C3:D7:10:20:BC:58:48:E3:C4:3A:50
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pubhubsub.com
*.pubhubsub.com
ai-naturalized.com
*.ai-naturalized.com
aimerzion.com
*.aimerzion.com
apreviousengagement.com
*.apreviousengagement.com
berkat49.com
*.berkat49.com
berkat69.com
*.berkat69.com
berkat77.com
*.berkat77.com
bittertastes.com
*.bittertastes.com
businessnewcastle.com.au
*.businessnewcastle.com.au
cdn-star.xyz
*.cdn-star.xyz
cloaca.it
*.cloaca.it
*.hostmaster.cloaca.it
*.mx.cloaca.it
*.www.cloaca.it
countcat.com
*.countcat.com
ct.tel
*.ct.tel
dishsports.com
*.dishsports.com
douy115.sbs
*.douy115.sbs
dsoulytare.com
*.dsoulytare.com
e300.lol
*.e300.lol
el2rq3qmq.life
*.el2rq3qmq.life
googlebbs.com
*.googlebbs.com
indexerindex.co
*.indexerindex.co
*.api.jinko.pro
jinko.pro
*.jinko.pro
jplocks.cfd
*.jplocks.cfd
kisame.tv
*.kisame.tv
koko188-pk.com
*.koko188-pk.com
michael097.shop
*.michael097.shop
noidx-bento123health.shop
*.noidx-bento123health.shop
partnerist.com
*.partnerist.com
prostatecancerprevention.net
*.prostatecancerprevention.net
sarasotarealty.co
*.sarasotarealty.co
summerhighlights.com
*.summerhighlights.com
synergyflow.co
*.synergyflow.co
thejoyaact.com
*.thejoyaact.com
tokom.xyz
*.tokom.xyz
touchtrips.com
*.touchtrips.com
ts3csrd.com
*.ts3csrd.com
ultimasnoticiasve.com
*.ultimasnoticiasve.com
ww574.top
*.ww574.top
wwwc554.cc
*.wwwc554.cc
xgliz.my
*.xgliz.my
xn--muuq20h.com
*.xn--muuq20h.com
xuan116.top
*.xuan116.top
xuan187.top
*.xuan187.top
yabojy4.com
*.yabojy4.com
Other domains in certificate