Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=neurofeedback.live
Issuer
C=US, O=Let's Encrypt, CN=YR2
Valid From
June 04, 2026
Valid Until
September 02, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
B3:77:7F:D1:55:63:E6:99:8E:DA:6B:67:6E:0F:48:40:2C:16:F5:39:CE:5E:00:E6:1B:60:C4:0F:C6:17:05:39
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
radiosmall.com
*.radiosmall.com
*.intranet.radiosmall.com
aaran.de
*.aaran.de
*.email.aaran.de
*.hostmaster.aaran.de
*.kunde.aaran.de
*.webmail05.aaran.de
*.ww25.aaran.de
billetcool.com
*.billetcool.com
*.webmail.billetcool.com
*.www.billetcool.com
designe.club
*.designe.club
*.www.designe.club
doag.pl
*.doag.pl
*.eyniki.doag.pl
*.mcl.doag.pl
*.papgen.doag.pl
*.winiki.doag.pl
*.wqyniki.doag.pl
*.wtniki.doag.pl
*.wuniki.doag.pl
*.ww25.doag.pl
*.wybiki.doag.pl
*.wymiki.doag.pl
*.wynik.doag.pl
*.wynik8.doag.pl
*.wyniki.doag.pl
*.wynikki.doag.pl
*.wyniko.doag.pl
*.wynili.doag.pl
*.wynimi.doag.pl
*.wynjki.doag.pl
*.wynki.doag.pl
*.wynoki.doag.pl
hboute.cn
*.hboute.cn
*.ils673.hboute.cn
*.lanas.maskedsurf.com
maskedsurf.com
*.maskedsurf.com
neurofeedback.live
*.neurofeedback.live
*.remote.neurofeedback.live
*.www.neurofeedback.live
nordiccartyres.com
*.nordiccartyres.com
*.1p.sxtdjc.cn
*.admin.sxtdjc.cn
*.ats.sxtdjc.cn
*.atus.sxtdjc.cn
*.autoconfig.sxtdjc.cn
*.blog.sxtdjc.cn
*.cloud.sxtdjc.cn
*.cod9.sxtdjc.cn
*.control.sxtdjc.cn
*.cpanel.sxtdjc.cn
*.dev.sxtdjc.cn
*.direct.sxtdjc.cn
*.gnuxop.sxtdjc.cn
*.home.sxtdjc.cn
*.hop.sxtdjc.cn
*.io3kw.sxtdjc.cn
*.l.sxtdjc.cn
*.news.sxtdjc.cn
*.pgl.sxtdjc.cn
*.secure.sxtdjc.cn
*.shop.sxtdjc.cn
*.status.sxtdjc.cn
sxtdjc.cn
*.sxtdjc.cn
*.webdisk.sxtdjc.cn
*.whm.sxtdjc.cn
*.wpybyw.sxtdjc.cn
*.m.ultradef.tv
*.mta-sts.ultradef.tv
ultradef.tv
*.ultradef.tv
*.1d817.xcvav.top
*.2dbks.xcvav.top
*.hgsq5.xcvav.top
*.oahlw.xcvav.top
*.pwb3b.xcvav.top
*.tpxa3.xcvav.top
xcvav.top
*.xcvav.top
Other domains in certificate