Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=03660.one
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 08, 2026
Valid Until
September 06, 2026
73 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
12:DD:3F:86:94:46:DD:14:B3:66:3A:F9:C8:C3:41:6A:BA:33:54:14:A9:A2:89:F8:AC:41:CF:60:CC:93:5F:85
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
pumtu.com
*.pumtu.com
03660.one
*.03660.one
5378761.cc
*.5378761.cc
balato88.xyz
*.balato88.xyz
catherine472.my
*.catherine472.my
clayton823.my
*.clayton823.my
coloringwalls.com
*.coloringwalls.com
connectingit.com
*.connectingit.com
dewagacor89link.click
*.dewagacor89link.click
expertisediyprojects.live
*.expertisediyprojects.live
floridatrainer.com
*.floridatrainer.com
fltt-sale.sbs
*.fltt-sale.sbs
fuvjedilrylhdko.my
*.fuvjedilrylhdko.my
growurads.autos
*.growurads.autos
gudanglks.com
*.gudanglks.com
hlcg016.xyz
*.hlcg016.xyz
holdanluntz.com
*.holdanluntz.com
innovativetravelways.live
*.innovativetravelways.live
insurtechcompanies.xyz
*.insurtechcompanies.xyz
kylspqzn.mom
*.kylspqzn.mom
lilnesty.com
*.lilnesty.com
longhairstylesformen.com
*.longhairstylesformen.com
mdlandffkn.vip
*.mdlandffkn.vip
perfchecker.com
*.perfchecker.com
planshibei.com
*.planshibei.com
plinko1.online
*.plinko1.online
professionalfithaven.club
*.professionalfithaven.club
riskfusion.icu
*.riskfusion.icu
salthub.xyz
*.salthub.xyz
sightfuse.com
*.sightfuse.com
sunlifeinsurance.xyz
*.sunlifeinsurance.xyz
usd1.im
*.usd1.im
visionarycareersteps.live
*.visionarycareersteps.live
voyageexpertise.live
*.voyageexpertise.live
weddingesteem.beauty
*.weddingesteem.beauty
weddingsequel.beauty
*.weddingsequel.beauty
wiredtalk.com
*.wiredtalk.com
wrong.design
*.wrong.design
xn--sptzle-cua.online
*.xn--sptzle-cua.online
xzjlmy.cn
*.xzjlmy.cn
yqve6i.cyou
*.yqve6i.cyou
ysys335.xyz
*.ysys335.xyz
zk5rjd.cyou
*.zk5rjd.cyou
ztjqopudvln3rwbkxeymf.top
*.ztjqopudvln3rwbkxeymf.top
zzz8678.top
*.zzz8678.top
Other domains in certificate