Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=afrogarden.co
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 09, 2026
Valid Until
August 07, 2026
87 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
CE:25:B2:E3:99:AF:E8:0C:3E:20:D1:1B:F9:5A:DA:87:A6:34:A0:44:DB:79:C5:C8:84:64:70:35:4D:8D:AF:38
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
70 domains
fyr99.com
*.fyr99.com
*.38.fyr99.com
*.blog.fyr99.com
*.develop.fyr99.com
*.forum.fyr99.com
*.ildcard.fyr99.com
*.live.fyr99.com
*.navigation.fyr99.com
*.portal.fyr99.com
*.random.fyr99.com
*.search.fyr99.com
*.soft.fyr99.com
*.users.fyr99.com
*.video.fyr99.com
*.ww16.fyr99.com
afrogarden.co
*.afrogarden.co
*.pop.afrogarden.co
*.459694.alphahamster.club
alphahamster.club
*.alphahamster.club
*.sitemap.alphahamster.club
*.sitemaps.alphahamster.club
*.test.alphahamster.club
*.test2.alphahamster.club
*.app.hcbs.pro
hcbs.pro
*.hcbs.pro
*.learn.hcbs.pro
*.pay.hcbs.pro
*.providers.hcbs.pro
*.ww38.hcbs.pro
*.www.hcbs.pro
*.admin.klxqyyds.site
klxqyyds.site
*.klxqyyds.site
*.mail.klxqyyds.site
*.node1.klxqyyds.site
*.node3.klxqyyds.site
*.node5.klxqyyds.site
*.cluster.oregon.bio
*.odf.oregon.bio
oregon.bio
*.oregon.bio
*.autodiscover.qotd.me
*.cpanel.qotd.me
*.mail.qotd.me
qotd.me
*.qotd.me
*.a.thermomap.xyz
*.admin.thermomap.xyz
*.api.thermomap.xyz
*.c.thermomap.xyz
*.cdn.thermomap.xyz
*.client.thermomap.xyz
*.d.thermomap.xyz
*.emv1.thermomap.xyz
*.en.thermomap.xyz
*.m.thermomap.xyz
*.mail.thermomap.xyz
*.sitemap.thermomap.xyz
*.sitemaps.thermomap.xyz
*.test.thermomap.xyz
thermomap.xyz
*.thermomap.xyz
*.wap.thermomap.xyz
*.webmail.thermomap.xyz
*.ww1.thermomap.xyz
*.ww3.thermomap.xyz
Other domains in certificate