Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=96582.mobi
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 22, 2026
Valid Until
August 20, 2026
61 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
61:5C:8D:5A:E9:BA:E3:CA:7E:54:F6:C1:FD:75:D8:7D:58:41:F0:6F:AF:EF:7D:80:04:5F:FF:1F:5A:3E:63:93
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
qixir.com
*.qixir.com
04398.lgbt
*.04398.lgbt
27651.top
*.27651.top
29762.my
*.29762.my
373649.loan
*.373649.loan
39776.loan
*.39776.loan
41559.blog
*.41559.blog
49mhs.cc
*.49mhs.cc
52652.mobi
*.52652.mobi
58379.one
*.58379.one
59461.top
*.59461.top
63600.mobi
*.63600.mobi
69026.center
*.69026.center
6ew8w9cy8.top
*.6ew8w9cy8.top
720669.my
*.720669.my
85012.my
*.85012.my
95081.mobi
*.95081.mobi
96582.mobi
*.96582.mobi
appjiass2.cc
*.appjiass2.cc
at-software.com
*.at-software.com
autosecureschutz.com
*.autosecureschutz.com
belg.life
*.belg.life
bladedao.com
*.bladedao.com
c51t.shop
*.c51t.shop
firecom.xyz
*.firecom.xyz
fitprogame.digital
*.fitprogame.digital
flikbetth.com
*.flikbetth.com
flinusta.net
*.flinusta.net
fluchthuhn.win
*.fluchthuhn.win
foodvalueguide.food
*.foodvalueguide.food
gasgrove.com
*.gasgrove.com
gkbet888.xyz
*.gkbet888.xyz
izmiradamedikal.com
*.izmiradamedikal.com
jlbzcl.com
*.jlbzcl.com
jsbound.com
*.jsbound.com
lksxmr.work
*.lksxmr.work
lsqbusiness.com
*.lsqbusiness.com
lunstrum13.live
*.lunstrum13.live
obirth.com
*.obirth.com
pop520.vip
*.pop520.vip
potashamerica.net
*.potashamerica.net
proplab.bet
*.proplab.bet
proxy-links.top
*.proxy-links.top
quieromalaga.com
*.quieromalaga.com
raas.diy
*.raas.diy
Other domains in certificate