Open
Cached
·
1h ago
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=aqdaqd.cn
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 18, 2026
Valid Until
August 16, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:CF:4C:37:84:66:16:F3:4A:E4:B7:F2:0A:71:5B:F7:CE:D4:72:52:00:F6:43:A2:52:D5:EC:D5:5A:CA:4D:66
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
puion.com
*.puion.com
aqdaqd.cn
*.aqdaqd.cn
areaclientes-orange.click
*.areaclientes-orange.click
atlasmobile.co
*.atlasmobile.co
auburnpeople.co
*.auburnpeople.co
awano.co
*.awano.co
belesaa.co
*.belesaa.co
binanc.co
*.binanc.co
bosandara.vip
*.bosandara.vip
brokestraightboys.co
*.brokestraightboys.co
businessbrickshub.com
*.businessbrickshub.com
camair.co
*.camair.co
captbenz.co
*.captbenz.co
myeloma-syndrome-search.today
*.myeloma-syndrome-search.today
net9ja.co
*.net9ja.co
nfgqboacuthefpn.cc
*.nfgqboacuthefpn.cc
nmgas.co
*.nmgas.co
nplay.asia
*.nplay.asia
omegaseeker769.shop
*.omegaseeker769.shop
organvio.com
*.organvio.com
osakametro.co
*.osakametro.co
pawlylab.co
*.pawlylab.co
payharris.co
*.payharris.co
potpg.vip
*.potpg.vip
princessmargaretlotto.co
*.princessmargaretlotto.co
raceletics.info
*.raceletics.info
reallyconfused.co
*.reallyconfused.co
redmondpd.co
*.redmondpd.co
restockar.co
*.restockar.co
riotart.co
*.riotart.co
rojgarmetro.co
*.rojgarmetro.co
ryuugames.co
*.ryuugames.co
sales-manager-training-kt3.click
*.sales-manager-training-kt3.click
shcedule35.co
*.shcedule35.co
spicetv.co
*.spicetv.co
stream-watch.co
*.stream-watch.co
supportiq.co
*.supportiq.co
surronbikes.co
*.surronbikes.co
thefruitman.co
*.thefruitman.co
tomorrowmall.co
*.tomorrowmall.co
trapcotton.store
*.trapcotton.store
tuoi18.co
*.tuoi18.co
zapes.co
*.zapes.co
zarinapp.co
*.zarinapp.co
zedaw.com
*.zedaw.com
Other domains in certificate