Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=hotwin888.biz
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 01, 2026
Valid Until
July 30, 2026
66 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
68:C7:B7:0E:9D:40:1E:6A:41:70:7E:8B:A1:91:3D:4E:B3:80:A8:7C:48:30:24:62:39:2D:B1:C3:18:3D:EE:B9
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
sciencesimplified.pro
*.sciencesimplified.pro
*.artclass.sciencesimplified.pro
*.esting.sciencesimplified.pro
*.grades.sciencesimplified.pro
*.iloveminors.sciencesimplified.pro
*.labs.sciencesimplified.pro
*.monkeytype.sciencesimplified.pro
*.portal.sciencesimplified.pro
*.quantiunphysics.sciencesimplified.pro
*.quantomphysics.sciencesimplified.pro
*.testing.sciencesimplified.pro
*.whgoruhsdc.sciencesimplified.pro
binnion.com
*.binnion.com
*.www.binnion.com
*.admin.hotwin888.biz
*.api.hotwin888.biz
*.app.hotwin888.biz
*.authsmtp.hotwin888.biz
*.cdn.hotwin888.biz
*.cloud.hotwin888.biz
*.dashboard.hotwin888.biz
*.demo.hotwin888.biz
*.dev.hotwin888.biz
*.docs.hotwin888.biz
*.email.hotwin888.biz
*.gateway.hotwin888.biz
hotwin888.biz
*.hotwin888.biz
*.m.hotwin888.biz
*.mail2.hotwin888.biz
*.mbox.hotwin888.biz
*.mx.hotwin888.biz
*.mx10.hotwin888.biz
*.new.hotwin888.biz
*.office.hotwin888.biz
*.pay.hotwin888.biz
*.poczta.hotwin888.biz
*.portal.hotwin888.biz
*.postmaster.hotwin888.biz
*.staging.hotwin888.biz
*.status.hotwin888.biz
*.web.hotwin888.biz
*.webmail.hotwin888.biz
*.ww25.hotwin888.biz
*.www2.hotwin888.biz
*.access.listwow.com
*.api.listwow.com
*.demo.listwow.com
*.dev.listwow.com
*.drive.listwow.com
*.htc.listwow.com
listwow.com
*.listwow.com
*.metrics.listwow.com
*.mpfbnmetrics.listwow.com
*.my.listwow.com
*.rd.listwow.com
*.rdg.listwow.com
*.rdweb.listwow.com
*.remote.listwow.com
*.test.listwow.com
*.ts.listwow.com
*.webmail.listwow.com
*.www.listwow.com
*.25.mediacomonnyourside.com
*.ads.mediacomonnyourside.com
*.beta.mediacomonnyourside.com
*.cd.mediacomonnyourside.com
*.client.mediacomonnyourside.com
*.dom.mediacomonnyourside.com
*.en.mediacomonnyourside.com
*.intranet.mediacomonnyourside.com
*.letter.mediacomonnyourside.com
mediacomonnyourside.com
*.mediacomonnyourside.com
*.wiki.mediacomonnyourside.com
*.win8.mediacomonnyourside.com
*.ww16.mediacomonnyourside.com
*.ww38.mediacomonnyourside.com
*.0dhdn0.yfdh.net
*.login.yfdh.net
*.portal.yfdh.net
*.sslvpn.yfdh.net
*.vip.yfdh.net
*.web.yfdh.net
*.webconnect.yfdh.net
yfdh.net
*.yfdh.net
Other domains in certificate