Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=badlandsrichescharge.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 20, 2026
Valid Until
August 18, 2026
65 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4B:BB:20:BA:70:AB:8C:07:EC:32:83:17:40:4F:9D:E6:0D:04:8C:15:25:1F:8D:8C:0C:60:AF:2D:66:95:2C:79
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
88 domains
refusionsag.com
*.refusionsag.com
17002.blog
*.17002.blog
827365.co
*.827365.co
99824.one
*.99824.one
alphaprofittrade.com
*.alphaprofittrade.com
aolmgame1.vip
*.aolmgame1.vip
badlandsrichescharge.com
*.badlandsrichescharge.com
badlandsrichesgrand.com
*.badlandsrichesgrand.com
baita.co
*.baita.co
begikm.xyz
*.begikm.xyz
bettinglike.com
*.bettinglike.com
broadnetworkdesk.sbs
*.broadnetworkdesk.sbs
browz.com.au
*.browz.com.au
craftedfitnesspath.run
*.craftedfitnesspath.run
cyberproject.co
*.cyberproject.co
dentisttustin.com
*.dentisttustin.com
depenses.com
*.depenses.com
depo55hoki.me
*.depo55hoki.me
dizipal1036.com
*.dizipal1036.com
e25kss.cyou
*.e25kss.cyou
freshguardglass.com
*.freshguardglass.com
furfriendhub.xyz
*.furfriendhub.xyz
g1ma-9shkola60-bn.xyz
*.g1ma-9shkola60-bn.xyz
g98auk.cyou
*.g98auk.cyou
hempstraws.com
*.hempstraws.com
jjjtires.com
*.jjjtires.com
lexus234d.cyou
*.lexus234d.cyou
libereencomenda.com
*.libereencomenda.com
magicexplorer668.info
*.magicexplorer668.info
meetstarsnow.com
*.meetstarsnow.com
merriweatherfoundation.co
*.merriweatherfoundation.co
mnogeadventures.com
*.mnogeadventures.com
moban.shop
*.moban.shop
moflixstream.xyz
*.moflixstream.xyz
montresor.co
*.montresor.co
mopqrs.xyz
*.mopqrs.xyz
moqsux.xyz
*.moqsux.xyz
mq4.cc
*.mq4.cc
nextcortexcore.digital
*.nextcortexcore.digital
pastry.finance
*.pastry.finance
realmpuzzle573.shop
*.realmpuzzle573.shop
redmiphones.com
*.redmiphones.com
regener8.house
*.regener8.house
rvxy23.xyz
*.rvxy23.xyz
Other domains in certificate