Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=2fyoutu.be
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 26, 2026
Valid Until
August 24, 2026
62 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:27:2E:EB:A9:C0:07:CF:79:72:08:28:8A:D9:59:26:51:2A:82:70:07:72:C7:45:8C:1E:2E:6E:04:C6:ED:90
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
regiosn.com
*.regiosn.com
*.demographics.regiosn.com
*.onepass.regiosn.com
*.relationshipiq.regiosn.com
*.ww25.regiosn.com
*.ww38.regiosn.com
2fyoutu.be
*.2fyoutu.be
*.ww16.2fyoutu.be
*.ww38.2fyoutu.be
accelerated.it
*.accelerated.it
*.hostmaster.accelerated.it
*.acxounts.capitoleone.com
capitoleone.com
*.capitoleone.com
*.getmyoffer.capitoleone.com
*.api.carbonintensity.org
carbonintensity.org
*.carbonintensity.org
carltonaudiovisual.au
*.carltonaudiovisual.au
*.random.carltonaudiovisual.au
*.ww38.carltonaudiovisual.au
centraltexasharleydavidson.com
*.centraltexasharleydavidson.com
*.wildcard.centraltexasharleydavidson.com
*.cpcalendars.debitcard.com.au
debitcard.com.au
*.debitcard.com.au
*.lyrictheatre.debitcard.com.au
*.mail.debitcard.com.au
*.novated-lease.debitcard.com.au
*.windfarms.debitcard.com.au
edgenuty.com
*.edgenuty.com
*.learn.edgenuty.com
*.mp.edgenuty.com
*.6607250.fotnet24.com
fotnet24.com
*.fotnet24.com
*.www.fotnet24.com
freyuspost.click
*.freyuspost.click
*.ww25.freyuspost.click
karmarktiregalesburg.com
*.karmarktiregalesburg.com
*.emayl.muxic.com
*.ethio.muxic.com
*.id.muxic.com
muxic.com
*.muxic.com
oceancity.com.au
*.oceancity.com.au
*.random.oceancity.com.au
*.ww25.oceancity.com.au
overflix.life
*.overflix.life
*.www.overflix.life
*.emv1.permanentresident.au
permanentresident.au
*.permanentresident.au
*.ww16.permanentresident.au
peugeot-rethel.com
*.peugeot-rethel.com
*.ww16.peugeot-rethel.com
*.ww17.peugeot-rethel.com
*.ww25.peugeot-rethel.com
*.ww38.peugeot-rethel.com
*.ibanking.prasac.com
prasac.com
*.prasac.com
*.com.tavgasht.net
*.cpcalendars.tavgasht.net
tavgasht.net
*.tavgasht.net
*.webmail.tavgasht.net
window.net.au
*.window.net.au
*.3nllmmcudd.xin67.xyz
*.algl9mslxn86au8m.xin67.xyz
*.otc.xin67.xyz
*.random.xin67.xyz
*.wildcard.xin67.xyz
*.ww25.xin67.xyz
*.ww38.xin67.xyz
*.www.xin67.xyz
xin67.xyz
*.xin67.xyz
Other domains in certificate